ShinyHunters Hackers Claim Theft of 3M+ Cisco Records, Threaten Public Leak
2026-04-02T20:51:44Z•58bab78148a0d2e735ebe776b568329258dfddd739daf0118871cf7ca25fa95d
AWSCiscoGitHubImageMagickLinuxMicrosoftRCESalesforceShinyHuntersStormVBSWhatsAppWordPressYureibackdoorbrowserscredential-theftcryptowalletsdata-breachdual-use-toolsinfostealermalwarephishing-scamsransomwarezero-day
What happened
Multiple high-impact incidents reported: ShinyHunters claim theft of 3M+ Cisco records via Salesforce/AWS and threaten a public leak; Microsoft warns of active VBS WhatsApp attachment campaigns that install backdoors on Windows; Octagon Networks/others disclosed a critical ImageMagick zero-day enabling RCE against Linux and WordPress servers; Varonis details the Storm infostealer sold as a service that targets browsers, wallets and accounts and can bypass Chrome protections; Team Cymru documents Yurei ransomware using common admin tools and themed payload names; scams targeting GitHub devs (pr
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- hackread
- Record identifier
- 58bab78148a0d2e735ebe776b568329258dfddd739daf0118871cf7ca25fa95d
- Enrichment time
- 2026-04-02T20:51:44Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.