QuickFox Supply Chain Attack Delivers FDMTP Backdoor via Trojanized Windows Installer
2026-08-05T07:23:58Z•16711de2f972c3167d8b825eaf6ea4915e34728fdb245863d4038e2445c25bc6
CVE-2026-17583CVE-2026-18556CVE-2026-18577CVE-2026-48449CVE-2026-58048AI-securityClickFixFDMTPKEVMFA-bypassRATRMMScreenConnectactive-exploitationarbitrary-code-executionbackdoorcredential-theftcryptocurrency-theftdata-breachdevice-code-phishingmalwarenpmphishingprivilege-escalationprompt-injectionransomwareremote-accesssoftware-supply-chainsteganographysupply-chain-attack
What happened
The feed highlights widespread active cyber threats, including supply-chain compromises, malicious npm packages, phishing-as-a-service, ransomware exploitation of exposed appliances, malware delivery through fake updates and ClickFix lures, AI-agent prompt injection, and critical vulnerabilities in enterprise software. Several incidents involve active exploitation and significant impacts such as remote administrative access, arbitrary code execution, credential theft, data exposure, and cryptocurrency loss.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 16711de2f972c3167d8b825eaf6ea4915e34728fdb245863d4038e2445c25bc6
- Enrichment time
- 2026-08-05T07:23:58Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.