Fake SSA Emails Drive Venomous#Helper Phishing Campaign
2026-05-05T14:52:19Z•ae65cd123377e54ddf964363c6d9644e8f6b7644c1a703fa72f1c38990960ab5
AI-riskOT-securityRATRMMbackdoorcredential-theftdata-breachlinux-kernelmalwarenation-statenpmpasskeyspatch-managementpersistent-accessphishingransomwaresigned-binariessocial-engineeringsource-code-leaksupply-chainvulnerability-managementwiperzero-day
What happened
This collection reports multiple high-risk cyber developments: a Venomous#Helper phishing campaign impersonating the US Social Security Administration to deliver signed RMM software and establish persistent access; several high-impact breaches and incidents (Trellix source‑code access, Medtronic data breach, Itron cyber‑attack); discovery of a nine‑year‑old Linux kernel zero‑day; emergence of evasive malware (Deep#Door Python RAT, malicious npm dependency, npm worm‑like propagation) and a critical Vect ransomware flaw that turns it into a destructive wiper; large-scale credential compromise (2
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- infosecurity_magazine
- Record identifier
- ae65cd123377e54ddf964363c6d9644e8f6b7644c1a703fa72f1c38990960ab5
- Enrichment time
- 2026-05-05T14:52:19Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.