Iran-Linked Hackers Breach FBI Director’s Personal Email, Hit Stryker With Wiper Attack
2026-03-28T19:24:06Z•17d509bf8a2ab3a6fe69bd8421c9061feed72a827b11713a5859c8c7b79bcd52
bpfd00rci-cd-compromisecitrix-netscalercve-2025-53521cve-2026-3055data-breachdevice-code-phishingexploitation-in-the-wildf5-bigipios-exploit-kitmobile-exploitnation-stateoauth-abusephishingpyPIransomwaresupply-chaintelecom-implantweb-attackweb-rtc-skimmerwiper
What happened
Multiple high-impact cyber incidents and active threats were reported: Iran-linked Handala breached FBI Director Kash Patel’s personal email and disclosed stolen files while also carrying out a wiper attack against Stryker; critical vulnerabilities in Citrix NetScaler (CVE-2026-3055, memory overread, active reconnaissance) and F5 BIG‑IP APM (CVE-2025-53521, added to CISA KEV for observed exploitation) are being actively targeted. Supply-chain compromises by TeamPCP impacted PyPI (telnyx) and backdoored litellm via a Trivy CI/CD compromise, with malicious packages used to steal credentials and植
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 17d509bf8a2ab3a6fe69bd8421c9061feed72a827b11713a5859c8c7b79bcd52
- Enrichment time
- 2026-03-28T19:24:06Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.