Ariomex, Iran-based crypto exchange, suffers data leak

2026-03-04T21:46:34Z8e1152d71ee2fb733ed6ba4c9e722da731fba744b2d02480773a351f709a24b8
CVE-2026-0628CVE-2026-21385CVE-2026-21513air-gapped-breachandroidapt28apt37ariomexchromeclawjackeddata-leakeuropolgeminimshtmlnscs-warningoauth-phishingopenclaworacle-ebsqualcommusb-implantzero-dayzoho-workdrive

What happened

Multiple high-impact cyber incidents and active exploitations were reported: an Iran-based crypto exchange (Ariomex) leaked user and transaction data spanning 2022–2025; the 2025 Oracle E-Business Suite (EBS) campaign impacted Madison Square Garden and exposed sensitive data; Microsoft warned of OAuth redirection phishing targeting government/public-sector users to bypass defenses; Google confirmed active exploitation of a Qualcomm Android vulnerability (CVE-2026-21385); Palo Alto researchers disclosed a Chrome/Gemini Live extension hijack vulnerability (CVE-2026-0628) enabling spying and data

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
8e1152d71ee2fb733ed6ba4c9e722da731fba744b2d02480773a351f709a24b8
Enrichment time
2026-03-04T21:46:34Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Ariomex, Iran-based crypto exchange, suffers data leak · Baitaphish