Over 500 Organizations Hit in Years-Long Phishing Campaign
2026-05-11T07:24:04Z•280a351f576c7425b87731839af1d63cbc0cfc9f37a60355201be484e1b9aa99
CVE-2026-6973api-key-rotationchrome-extension-vulnerabilitycloud-credentialsdata-breachics-breachindustrial-control-systemsivantimalwarephishingphishing-campaignransomwarewater-treatmentworm
What happened
Multiple SecurityWeek reports cover a broad wave of active threats and incidents: a years‑long phishing campaign that impacted over 500 organizations across aviation, critical infrastructure, energy, logistics, public administration and technology; ICS compromises at five Polish water treatment plants with attackers able to change operational parameters; and a range of high‑impact compromises and malware campaigns (PCPJack worm, PamDOORa Linux backdoor, RansomHouse claim of a Trellix breach). Significant operational and data‑security incidents include Braintrust’s AWS account compromise and AI
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityweek
- Record identifier
- 280a351f576c7425b87731839af1d63cbc0cfc9f37a60355201be484e1b9aa99
- Enrichment time
- 2026-05-11T07:24:04Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.