FBI Warns Russian Intelligence Hackers Target Signal Backup Recovery Keys
2026-06-27T01:24:11Z•58163e9b2642d8fbe7c020dcb90b58a0d4763c2908fc40f7e350f75b6a2ccfa1
active-exploitationbackdoorchrome-extensionci/cdcisacobalt-strikecredential-harvestingfortigategithub-actionsiotkevlinux-kernelloadermacosmalwarenpmphishingprivilege-escalationprompt-injectionrussian-intelligencesignalsupply-chainzero-day
What happened
A large set of active threats and high-impact vulnerabilities were reported: Russian intelligence phishing campaigns now coax targets into surrendering Signal Backup Recovery Keys to restore and seize accounts; multiple new malware families and loaders (SharkLoader/StrikeShark, TinyRCT, Miasma, Mistic, Gaslight, Node.js implants) are being used for espionage, supply‑chain, and targeted intrusions; several high-severity Linux kernel privilege-escalation flaws have public exploits (pedit COW and DirtyClone); and critical enterprise/network device flaws (Cisco Catalyst SD‑WAN, Cisco Unified CM, P
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 58163e9b2642d8fbe7c020dcb90b58a0d4763c2908fc40f7e350f75b6a2ccfa1
- Enrichment time
- 2026-06-27T01:24:11Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.