Over 500 Organizations Hit in Years-Long Phishing Campaign

2026-05-11T07:24:04Z280a351f576c7425b87731839af1d63cbc0cfc9f37a60355201be484e1b9aa99
CVE-2026-6973api-key-rotationchrome-extension-vulnerabilitycloud-credentialsdata-breachics-breachindustrial-control-systemsivantimalwarephishingphishing-campaignransomwarewater-treatmentworm

What happened

Multiple SecurityWeek reports cover a broad wave of active threats and incidents: a years‑long phishing campaign that impacted over 500 organizations across aviation, critical infrastructure, energy, logistics, public administration and technology; ICS compromises at five Polish water treatment plants with attackers able to change operational parameters; and a range of high‑impact compromises and malware campaigns (PCPJack worm, PamDOORa Linux backdoor, RansomHouse claim of a Trellix breach). Significant operational and data‑security incidents include Braintrust’s AWS account compromise and AI

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityweek
Record identifier
280a351f576c7425b87731839af1d63cbc0cfc9f37a60355201be484e1b9aa99
Enrichment time
2026-05-11T07:24:04Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.