Ariomex, Iran-based crypto exchange, suffers data leak
2026-03-04T21:46:34Z•8e1152d71ee2fb733ed6ba4c9e722da731fba744b2d02480773a351f709a24b8
CVE-2026-0628CVE-2026-21385CVE-2026-21513air-gapped-breachandroidapt28apt37ariomexchromeclawjackeddata-leakeuropolgeminimshtmlnscs-warningoauth-phishingopenclaworacle-ebsqualcommusb-implantzero-dayzoho-workdrive
What happened
Multiple high-impact cyber incidents and active exploitations were reported: an Iran-based crypto exchange (Ariomex) leaked user and transaction data spanning 2022–2025; the 2025 Oracle E-Business Suite (EBS) campaign impacted Madison Square Garden and exposed sensitive data; Microsoft warned of OAuth redirection phishing targeting government/public-sector users to bypass defenses; Google confirmed active exploitation of a Qualcomm Android vulnerability (CVE-2026-21385); Palo Alto researchers disclosed a Chrome/Gemini Live extension hijack vulnerability (CVE-2026-0628) enabling spying and data
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityaffairs
- Record identifier
- 8e1152d71ee2fb733ed6ba4c9e722da731fba744b2d02480773a351f709a24b8
- Enrichment time
- 2026-03-04T21:46:34Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.