SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 91
2026-04-05T14:51:44Z•a69867cb93eb4f34728a1f188405b9182efbfcf7552a54feb2160b00726df87a
CVE-2026-3502CrystalX RATDriftEuropean Commission breachHandalaHasbro breachInfiniti Stealer (macOS)Known Exploited VulnerabilitiesMaaSNorth Korea-linkedPSK Wind TechnologiesQilin ransomwareTeamPCPTrueConfaxios compromisecrypto heistmalicious .cmd payloadnpm supply chainprivilege escalationsupply-chain attack
What happened
Feed summarizes multiple notable incidents: CISA added TrueConf Client vulnerability CVE-2026-3502 (CVSS 7.8) to its KEV catalog; CERT-EU links a European Commission cloud breach exposing data from ~30 EU entities to TeamPCP; a sophisticated $285M crypto heist (nonce-based, likely North Korea-linked) drained funds from Drift; Qilin ransomware claims data theft from German party Die Linke; Kaspersky uncovered CrystalX RAT offered as MaaS (spyware/stealer/RAT); pro‑Iran Handala claims breach of Israeli contractor PSK Wind; Hasbro investigating a disruptive cyberattack; and additional items cover
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityaffairs
- Record identifier
- a69867cb93eb4f34728a1f188405b9182efbfcf7552a54feb2160b00726df87a
- Enrichment time
- 2026-04-05T14:51:44Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.