Windows Botnet x47.c Offers AI API Draining, 18 Attack Methods

2026-09-23T14:52:07Z•f4abf571810dfab87c032b4e47ed3cd903c3e658c686f7f84f5820e9ef91cf04
AI-securityAndroidCISAChinaIranNorth KoreaWindowsWordPressactive-exploitationbotnetcloud-securitycredential-theftcritical-infrastructuredata-breachidentity-securityincident-responsemalwarenation-statenpmphishingransomwaresupply-chain-securitythreat-intelligencewebshellzero-day

What happened

A September 2026 Infosecurity Magazine news feed covering active exploitation, ransomware, malware, data breaches, supply-chain compromise, AI-enabled attacks, phishing, and cybersecurity guidance. Notable items include exploitation of critical Cisco ISE, GitLab, WooCommerce, TP-Link camera, Microsoft RDS, and Marimo vulnerabilities; Windows and Android malware campaigns; ransomware growth; attacks attributed to North Korean, Iranian, Chinese, and other threat actors; and compromises involving Revolut, npm packages, browser extensions, and cloud identity tokens.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
infosecurity_magazine
Record identifier
f4abf571810dfab87c032b4e47ed3cd903c3e658c686f7f84f5820e9ef91cf04
Enrichment time
2026-09-23T14:52:07Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.