CPUID Breach Distributes STX RAT via Trojanized CPU-Z and HWMonitor Downloads
2026-04-12T07:24:14Z•46e45fbc18c9d418bd2b98a9c2d9f91ce709f8a8047f160e864cafb15a0c59f6
APT28/PRISMEXAcrobat ReaderDocker authz bypassEngageLabGlassWormIDE compromiseIran-linked OT attacksMarimo RCESDK data exposureSTX RATactive exploitationbotnet/cryptominingmalicious packages (npm/PyPI/Go/Rust)supply-chain compromisetrojanized installers
What happened
Multiple high-impact incidents and vulnerabilities reported across software supply chains, open-source tooling, cloud and endpoint ecosystems. Highlights include a CPUID website compromise that served trojanized CPU‑Z/HWMonitor installers delivering the STX RAT; Adobe emergency patches for an actively exploited Acrobat Reader vulnerability (CVE-2026-34621); a fast-exploited critical Marimo pre-auth RCE (CVE-2026-39987); a Docker Engine authz bypass enabling host access (CVE-2026-34040, related to CVE-2024-41110); and a widespread EngageLab Android SDK flaw exposing millions (including crypto‑w
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 46e45fbc18c9d418bd2b98a9c2d9f91ce709f8a8047f160e864cafb15a0c59f6
- Enrichment time
- 2026-04-12T07:24:14Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.