WeChat Worm Can Hijack Accounts Without Victims Answering Calls

2026-09-08T20:51:36Z7f7c94e4f1841a4006c28a27f1e3003ae4e3e430bed84e4db5f9b73446415fb4
AI agent securityAPISAdobe CommerceC2HAProxyMFA bypassMagentoMicrosoft 365NVIDIANorth KoreaSaaSV8 bytecodeWeChataccount takeoverbackdoorcryptocurrency stealerdata breachdata exposureflight datamemory corruptionpassport datasandbox escape、ransomwaresocial engineeringwormzero-day

What happened

Security news roundup covering a call-triggered WeChat account takeover worm, a 220.8-million-record APIS exposure, a North Korea-linked HAProxy backdoor, help-desk impersonation attacks bypassing MFA, major data leaks, active Magento and NVIDIA zero-day exploitation, cryptocurrency-stealing malware concealed in V8 bytecode, AI sandbox escapes, and a large ransomware data leak affecting Berlin state administration.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
7f7c94e4f1841a4006c28a27f1e3003ae4e3e430bed84e4db5f9b73446415fb4
Enrichment time
2026-09-08T20:51:36Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.