NCSC launches SilentGlass, a plug-in device to secure HDMI and DisplayPort links

2026-04-28T08:51:46Z62228ec1af64475f9cb9ebbe9fbba6d47b6f6443069df8ef4d45c16a66d0a456
CVE-2026-40050CVE-2026-6770China-linked-APTCrowdStrikeDisplayPortFast16GopherWhisperHDMIItronMedtronicNCSCShinyHuntersTorbrowser-fingerprintingcritical-vulnerabilitydata-breachespionagephysical-securityspear-phishingvulnerability

What happened

This collection of SecurityAffairs reports covers multiple high-impact incidents and research: CrowdStrike fixed a critical unauthenticated path-traversal vulnerability in LogScale (CVE-2026-40050) that could expose arbitrary files; a Firefox/Tor fingerprinting flaw (CVE-2026-6770) allowed cross-site tracking even in private/Tor sessions; the UK NCSC commercialized SilentGlass to protect HDMI/DisplayPort links from hardware attacks; Medtronic confirmed a breach after ShinyHunters claimed >9M records stolen; NASA staff were targeted by a China-linked spear-phishing campaign posing as a U.S.研究er

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
62228ec1af64475f9cb9ebbe9fbba6d47b6f6443069df8ef4d45c16a66d0a456
Enrichment time
2026-04-28T08:51:46Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.