Crypto Scam "ShieldGuard" Dismantled After Malware Discovery
2026-03-18T14:52:20Z•9170622c234b70f239d30d8ae207aed7e538ae4d0eb29163de7027cdb2d89a5e
API attacksAWS BedrockAppArmor/privilege escalationBlackSantaCISAClickFixCursorJackLLM/AI securityLinuxPixRevolutionShieldGuardVidaractive exploitationbrowser extension scamcisco sd-wancloud data exfiltrationcrypto theftinfostealerlaw enforcement takedownsmalwaren8nsupply-chain/hosting abusevulnerabilitieswordpress compromisezero-click
What happened
Infosecurity Magazine round-up highlights a surge in high-impact vulnerabilities and active malware campaigns. Notable items include a critical zero-click n8n flaw enabling full server compromise, exploited Cisco SD‑WAN vulnerabilities that prompted a CISA emergency directive, and multiple exploitation trends showing dramatically shortened time‑to‑exploit. Active campaigns and malware discussed include Vidar 2.0 infostealers distributed via GitHub/Reddit, ClickFix infections from compromised WordPress sites, BlackSanta EDR‑killer targeting HR, PIX‑targeting PixRevolution Android trojan, and a盗
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- infosecurity_magazine
- Record identifier
- 9170622c234b70f239d30d8ae207aed7e538ae4d0eb29163de7027cdb2d89a5e
- Enrichment time
- 2026-03-18T14:52:20Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.