Russian Hackers Target WhatsApp and Signal Accounts of Global Military and Government Officials
2026-03-10T14:52:16Z•475ac4080201d93cc8bf4ce714386b8e5f9200da25975317d5ca5d6e9834a4fd
AI-threatsSIEM-abuseapt37blockchain-c2botnetcloud-securitydata-breachdeepfakeespionageiOSincident-responselaw-enforcement-takedownleakbasemobile-exploitmuddywaterphishingphishing-as-a-serviceransomwareshinyhuntersstate-sponsoredsupply-chainthird-party-risktycoon2favulnerabilitieszero-day
What happened
Infosecurity Magazine roundup (early Mar 2026) reporting a broad surge in high-impact cyber activity: state-linked espionage (Russian attempts to hijack WhatsApp/Signal accounts of military and government officials; Iranian MuddyWater using a new 'Dindoor' backdoor; North Korea's APT37 extending air-gap breach capabilities), large-scale data theft and breaches (ShinyHunters' Salesforce/Experience Cloud campaign claiming ~400 sites; TriZetto Provider Solutions breach impacting 3.4M patients), weaponization of cloud and tooling (threats using Elastic Cloud as a stolen-data hub; Mail2Shell zero‑/
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- infosecurity_magazine
- Record identifier
- 475ac4080201d93cc8bf4ce714386b8e5f9200da25975317d5ca5d6e9834a4fd
- Enrichment time
- 2026-03-10T14:52:16Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.