Google Adds 24-Hour Wait for Unverified App Sideloading to Reduce Malware and Scams
2026-03-20T13:24:08Z•5644610ca4338867ce397fa56e5e7fc344fffcb174fd7ae8b16c489fc3d923a8
androidbyovdcisaedr-evasionexploit-kitiosiot-botnetmalwaremobile-malwareofacpatchingprivilege-escalationransomwarercethreat-actorvulnerabilityzero-day
What happened
This collection of The Hacker News items (Mar 17–20, 2026) highlights multiple high-impact vulnerabilities, active exploit campaigns, and emerging malware/abuse trends. Notable issues include a critical Cisco FMC zero-day (CVE-2026-20131) actively exploited by Interlock ransomware, a critical GNU inetutils telnetd root RCE (CVE-2026-32746), and other high-severity flaws in Ubuntu (CVE-2026-3888) and Apple WebKit (CVE-2026-20643). Google announced a 24-hour wait for sideloading unverified Android apps to reduce malware/scams. Researchers disclosed Magento “PolyShell” enabling unauthenticated R/
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 5644610ca4338867ce397fa56e5e7fc344fffcb174fd7ae8b16c489fc3d923a8
- Enrichment time
- 2026-03-20T13:24:08Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.