SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 88

2026-03-15T14:51:47Z11d292f6cbb6c01621214be1948d45a58e075e65f19ad979e358bc13ba30891c
AVreconCISAHive0163INTERPOLSlopolySocksEscortStorm-2561botnetcredential-theftenterprise-securitygoogle-chromeknown-exploited-vulnerabilitylaw-enforcementnuclear-researchphishingransomwarestarbuckssupply-chainvulnerabilityzero-day

What happened

Feed of security news (Mar 13–15, 2026) covering multiple active threats and law-enforcement actions: Google released fixes for two actively exploited Chrome vulnerabilities (CVE-2026-3909, CVE-2026-3910) which CISA added to its Known Exploited Vulnerabilities catalog; phishing against Starbucks’ Partner Central led to a breach impacting ~889 employees; Storm-2561 ran an SEO-poisoning campaign that lured victims to spoofed Ivanti/Cisco/Fortinet VPN sites to harvest corporate credentials; INTERPOL’s Operation Synergia III dismantled ~45,000 malicious IPs/servers and led to 94 arrests worldwide;

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
11d292f6cbb6c01621214be1948d45a58e075e65f19ad979e358bc13ba30891c
Enrichment time
2026-03-15T14:51:47Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.