CPUID Breach Distributes STX RAT via Trojanized CPU-Z and HWMonitor Downloads

2026-04-12T07:24:14Z46e45fbc18c9d418bd2b98a9c2d9f91ce709f8a8047f160e864cafb15a0c59f6
APT28/PRISMEXAcrobat ReaderDocker authz bypassEngageLabGlassWormIDE compromiseIran-linked OT attacksMarimo RCESDK data exposureSTX RATactive exploitationbotnet/cryptominingmalicious packages (npm/PyPI/Go/Rust)supply-chain compromisetrojanized installers

What happened

Multiple high-impact incidents and vulnerabilities reported across software supply chains, open-source tooling, cloud and endpoint ecosystems. Highlights include a CPUID website compromise that served trojanized CPU‑Z/HWMonitor installers delivering the STX RAT; Adobe emergency patches for an actively exploited Acrobat Reader vulnerability (CVE-2026-34621); a fast-exploited critical Marimo pre-auth RCE (CVE-2026-39987); a Docker Engine authz bypass enabling host access (CVE-2026-34040, related to CVE-2024-41110); and a widespread EngageLab Android SDK flaw exposing millions (including crypto‑w

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
46e45fbc18c9d418bd2b98a9c2d9f91ce709f8a8047f160e864cafb15a0c59f6
Enrichment time
2026-04-12T07:24:14Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.