Angry Birds: Toy Ghouls’ new toys
2026-09-09T20:51:46Z•9ca756aec4b56400689c617b6afcce30a3082a0582decfb9c1c21833caac45ee
AI securityAPTAfricaAndroid malwareDNS C2FinTechGoogle Apps ScriptICSIsraelMQTT C2Matrix ElementMiddle EastTelegram theftTrueConfaviationbackdoorscyber espionageindustrial control systemskernel rootkitmalwareproxy botnetransomwarevulnerability exploitation
What happened
Kaspersky Securelist threat intelligence covering August–September 2026 activity, including new backdoors and malware families, APT campaigns, kernel-level rootkits, exploitation of unpatched TrueConf servers, abuse of Google Apps Script and DNS for command-and-control, Android proxy botnets, Telegram data theft, and threats to industrial automation systems. The collection also includes quarterly vulnerability and exploit trends, including emerging risks in open-source AI agents and frameworks.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- kaspersky_securelist
- Record identifier
- 9ca756aec4b56400689c617b6afcce30a3082a0582decfb9c1c21833caac45ee
- Enrichment time
- 2026-09-09T20:51:46Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.