Cloud workload security: Mind the gaps
2026-03-25T08:51:43Z•e7ea2fcbbedbdf58d10badeb1b166ce456a1fa5cae581127640faf09e33947d9
account-takeoverandroid-malwareaptcloud-workload-securitycredential-stuffingcve-2025-50165data-wiperdynowiperedr-killerespionagefacial-recognition-bypassgenailongnosedgoblinmobile-securitypromptspyransomware-economysandwormscamssednitthreat-researchvulnerable-driverswindows-imaging-component
What happened
ESET WeLiveSecurity roundup covering recent threat research and practical guidance. Notable technical items include analysis of DynoWiper (data‑wiping incident attributed to Sandworm), PromptSpy (first observed Android malware leveraging generative AI), EDR-killer ecosystem abuses of vulnerable drivers, and a revisited critical Windows Imaging Component flaw (CVE-2025-50165). The feed also includes APT reporting (Sednit, LongNosedGoblin), cloud workload and account‑recovery guidance, and user-focused advisories on scams, biometric spoofing, and mobile permissions.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- eset_welivesecurity
- Record identifier
- e7ea2fcbbedbdf58d10badeb1b166ce456a1fa5cae581127640faf09e33947d9
- Enrichment time
- 2026-03-25T08:51:43Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.