Venezuela energy sector targeted by highly destructive Lotus wiper
2026-04-22T08:51:47Z•53f0d73b65aacd9846536c65a3f2d10368022a24b55d5d2fca86c772521093e7
Angelo MartinoBlackCatCISACisco CatalystContext.aiGoogle WorkspaceJetBrains TeamCity','DDoS','Bluesky','pro-Iran','France ANTS','デKasperskyKelp DAOKentico XperienceKnown Exploited VulnerabilitiesLayerZeroLazarusNorth KoreaPaperCut NG/MFQuest KACE SMASynacor ZCSVenezuelaVercelcrypto theftenergy sectorlotus wiperransomware-negotiatorthird-party AIwiper
What happened
Multiple high-impact cyber incidents reported: a destructive Lotus wiper campaign targeted Venezuela’s energy/utilities sector—using scripts to disable defenses and irrecoverably erase data; Lazarus stole $290M from Kelp DAO via LayerZero (a second $95M attempt blocked); and a Vercel breach resulted from a compromised third‑party AI tool (Context.ai) exposing an employee Google Workspace account and limited internal resources. Other notable items include a US man pleading guilty for secretly aiding BlackCat while working as a ransomware negotiator, CISA adding multiple product flaws (Cisco Cat
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityaffairs
- Record identifier
- 53f0d73b65aacd9846536c65a3f2d10368022a24b55d5d2fca86c772521093e7
- Enrichment time
- 2026-04-22T08:51:47Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.