UK Pledges £90m for Cybersecurity and Pushes for ‘Resilience Pledge’
2026-04-22T14:52:17Z•d615a9fa44fa96222018a60739df56976a4ef292e50d8e363c88d7933455f8e4
AI agents risk','GPT-5.4-Cyber'APK malformationAV killingAndroid malwareCVE-2024-3721CVE-2026-33032ENISA CVE programFormbookIoT botnetMiraiNIST NVD policy changeOT/ICS malwareProxySmartQR code phishingRMM abuseSIM farmsVercel breachZionSiphonmailbox rule abusemalicious browser extensionsphishingransomwaresigned adwaresilent-subject phishingsupply chain compromise
What happened
Infosecurity Magazine roundup covering widespread active exploitation and crime trends: a critical nginx‑ui MCP authentication bypass (CVE-2026-33032, CVSS 9.8) and Mirai-like campaigns exploiting TBK DVR devices (CVE-2024-3721) are being actively abused, while ransomware (BlackCat, Gentlemen, others), large‑scale SIM‑farm infrastructure (ProxySmart), and sophisticated phishing (silent/null‑subject, QR/RMM abuse, approval‑phishing) drive significant attacker activity. The report also highlights supply‑chain/third‑party breaches (Vercel), signed adware disabling AV across ~23,000 hosts, Android
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- infosecurity_magazine
- Record identifier
- d615a9fa44fa96222018a60739df56976a4ef292e50d8e363c88d7933455f8e4
- Enrichment time
- 2026-04-22T14:52:17Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.