Security Affairs newsletter Round 568 by Pierluigi Paganini – INTERNATIONAL EDITION
2026-03-22T08:51:41Z•544fb75c187e4cbd9fd7cb96f9d5657103f6af9b5e4cb6efeb7c49f414de90f8
AISURUAdobe CommerceCISACVE-2026-20131Cisco FMCCisco SCCCorunaDarkSwordIoT-botnetJackSkidKimwolfLos AngelesMagentoOPSECPolyShellStravaUbiquitiUniFiWorldLeaksXSSdata-breachexploit-kitsfile-upload-vulnerabilityransomwaresite-defacement
What happened
This feed roundup highlights multiple high-impact security events: the WorldLeaks ransomware group breached Los Angeles (including the Metro) causing operational disruption; Sansec disclosed a critical “PolyShell” REST API flaw in Magento/Adobe Commerce allowing unauthenticated file uploads and possible XSS; a widespread campaign defaced over 7,500 Magento sites; Navia Benefit Solutions reported a data breach affecting ~2.7M people; Apple warned of web-based exploit kits (Coruna, DarkSword) targeting outdated iPhones; Ubiquiti patched critical UniFi vulnerabilities enabling potential account-t
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityaffairs
- Record identifier
- 544fb75c187e4cbd9fd7cb96f9d5657103f6af9b5e4cb6efeb7c49f414de90f8
- Enrichment time
- 2026-03-22T08:51:41Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.