Iran-linked group Handala hacked FBI Director Kash Patel’s personal email account
2026-03-28T14:51:49Z•27628e31d0884c6298118a8da7ff11dd97c4ea3c79737dc870086271db41e1f9
aquasecurity-trivybpfd doorbpfdoorcisa-kevcloud-incidentcredential-compromisecritical-vulnerabilitycve-2025-53521cve-2026-33017cve-2026-33634cve-2026-4681european-commissionf5-bigipfbiflexplmhandalairan-linkedlangflowpersonal-emailphishing','aitm','tiktok-business','malvertising','webrtc-skimmptc-windchillred-menshentelecom-espionageunpatched-vulnerabilityweb-attack
What happened
Multiple high-risk incidents and vulnerability disclosures were reported: Iran-linked Handala claims compromise of FBI Director Kash Patel’s personal Gmail (alleged photos/files; FBI says no government data exposed). CISA added several high-severity flaws to its Known Exploited Vulnerabilities catalog, including F5 BIG‑IP AMP (CVE-2025-53521, CVSS 9.8), AquaSecurity Trivy (CVE-2026-33634, 9.3) and Langflow (CVE-2026-33017, 9.3). CISA and BSI warned of a critical, currently unpatched PTC Windchill/FlexPLM vulnerability (CVE-2026-4681, CVSS 10.0) with potential imminent exploitation. Other items
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityaffairs
- Record identifier
- 27628e31d0884c6298118a8da7ff11dd97c4ea3c79737dc870086271db41e1f9
- Enrichment time
- 2026-03-28T14:51:49Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.