Linx Security Raises $50 Million for Identity Security and Governance
2026-04-02T07:24:04Z•a5e1efff1c3637c0f419ce7a83a68b1213d2d5ef05229a0e2a1f99d085f46d76
CVE-2026-5281DeepLoadai-agentsaxiosbrowser-extensionchromecredential-theftcrypto-theftexploited-vulnerabilityfbihasbrolaw-enforcementmalwarenorth-koreanpmsmart-contract-exploitsupply-chainusb-spreadvertex-aizero-day
What happened
SecurityWeek roundup: Multiple high-impact incidents and disclosures — Google patched an exploited Chrome zero-day (CVE-2026-5281). A North Korean supply‑chain compromise hijacked the axios NPM package by abusing a long-lived token and CI/CD OIDC bypass. New DeepLoad malware campaigns steal credentials, install malicious browser extensions and spread via USB. Toy maker Hasbro is investigating a cyberattack. US authorities charged the hacker behind the Uranium crypto exchange theft (~$55M) that exploited smart contract vulnerabilities. Researchers also weaponized AI agents against Google Vertex
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityweek
- Record identifier
- a5e1efff1c3637c0f419ce7a83a68b1213d2d5ef05229a0e2a1f99d085f46d76
- Enrichment time
- 2026-04-02T07:24:04Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.