Week in review: Acrobat Reader flaw exploited, Claude Mythos offensive capabilities and limits
2026-04-19T08:51:59Z•c8fa8325cc2724af1f571b680de882cc9d36f736984bf18486b3259b8ecbf740
acrobat readeradobeagentic AIairtagandroid 17bluetooth replay attackchildren social media policygitlab 18.11google geminilioncardiqliongardmicrosoft defendermozilla thunderboltopen-source ai clientopenai codexpost-quantum cryptographyprivacyprivilege escalationscam adszero-day
What happened
Weekly roundup of notable security and AI developments: an Acrobat Reader vulnerability is being exploited in the wild and a researcher published multiple Microsoft Defender privilege‑escalation/disablement zero‑days with active exploitation; Apple AirTag location tracking can be manipulated via replayed Bluetooth signals; Google says Gemini models helped block 602 million scam ads; GitLab 18.11 expands agentic AI for security and delivery workflows; Mozilla released Thunderbolt (an open‑source, self‑hosted AI client); OpenAI updated the Codex desktop app; Android 17 Beta 4 adds post‑quantum c
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- helpnetsecurity
- Record identifier
- c8fa8325cc2724af1f571b680de882cc9d36f736984bf18486b3259b8ecbf740
- Enrichment time
- 2026-04-19T08:51:59Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.