DDoS wave continues as Mastodon hit after Bluesky incident
2026-04-22T20:51:49Z•8faefe3315d2f6691568f62289da50b8fdab5dd5d6fce5d7ec3fca968eca4661
BRIDGE:BREAKCVE-2025-29635CVE-2026-40372aianthropicasp.net coreblackcatbotnetcisa kevcrypto heistddoslantronixlazaruslotus wipermiraiprivilege escalationransomwaresilex technologysupply-chainvenezuela
What happened
This feed reports a wave of high-impact incidents: large DDoS outages hit decentralized social platforms (Mastodon and Bluesky); an active Mirai botnet is exploiting a command-injection flaw in legacy D-Link routers (CVE-2025-29635) after public PoC disclosure; Microsoft issued out-of-band fixes for a critical ASP.NET Core privilege-escalation (CVE-2026-40372, CVSS 9.1) that can yield SYSTEM privileges; and Forescout disclosed 22 BRIDGE:BREAK flaws affecting Lantronix and Silex serial-to-IP converters. Other notable items include a destructive Lotus wiper campaign against Venezuela’s energy/OT
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityaffairs
- Record identifier
- 8faefe3315d2f6691568f62289da50b8fdab5dd5d6fce5d7ec3fca968eca4661
- Enrichment time
- 2026-04-22T20:51:49Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.