Meta accused of violating DSA by failing to safeguard minors
2026-04-30T14:51:46Z•583b4e85667d2f14f05644197f9e45fdffacafe37f006c3b46e300031fd8e785
account-takeoveranodotauthentication-bugchild-safetycisaconnectwisecpanelcve-2024-02-21cve-2026-3854cve-2026-42208data-breachdsafacebookgithubinstagramknown-exploited-vulnerabilitieslitellmmetaphishing','signal','russia','internet-censorship','encryption','remote-code-executionrobloxshinyhunterssql-injectionukraine-policevimeo
What happened
Security news roundup: The European Commission accuses Meta of breaching the DSA by allowing users under 13 on Instagram and Facebook. Ukrainian authorities dismantled a large-scale operation that hijacked ~610,000 Roblox accounts for resale. A critical SQL injection in the LiteLLM Python package (CVE-2026-42208) was exploited within 36 hours of disclosure to access/modify databases. GitHub suffered a critical RCE vulnerability (CVE-2026-3854) exploitable via a single git push. cPanel patched a critical authentication bug affecting all supported versions. CISA added Windows Shell and ConnectWh
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityaffairs
- Record identifier
- 583b4e85667d2f14f05644197f9e45fdffacafe37f006c3b46e300031fd8e785
- Enrichment time
- 2026-04-30T14:51:46Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.