Aikido Security acquires Root to expand backported fixes for open source vulnerabilities

2026-06-30T14:51:50Z14cde91533ef64541ec5051104f6bd16443d101069599d1afbfb4da09b4d9edc
active-exploitationai-governanceairdropcredential-theftdjinn-stealermobile-protocolsopen-source-securityoracle-e-business-suitepatchingquick-sharermmsimplehelpsupply-chain

What happened

Feed highlights multiple security developments: Aikido Security acquired Root to expand backported fixes for open-source vulnerabilities and reduce supply‑chain risk. Active exploitation was observed for a critical Oracle E‑Business Suite Payments vulnerability (CVE-2026-46817) within weeks of Oracle’s patch. A recently patched SimpleHelp RMM authentication bypass (CVE-2026-48558) is being exploited in the wild to deliver the cross‑platform Djinn Stealer, which harvests credentials from cloud platforms, source control, package registries, AI assistants, browsers, SSH and crypto wallets. Separr

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
helpnetsecurity
Record identifier
14cde91533ef64541ec5051104f6bd16443d101069599d1afbfb4da09b4d9edc
Enrichment time
2026-06-30T14:51:50Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.