The MSP Guide to Using AI-Powered Risk Management to Scale Cybersecurity
2026-03-06T13:24:15Z•5fc6c374ae7f23c64f81ad9365cfc7bacca10ee97c349551bba3bb1a7f1ae06b
APTAPT28BruteEntryCISA-KEVCVE-2017-7921CVE-2026-20122CVE-2026-22719China-linkedClickFixCorunaDindoorDust SpecterFamousSparrowIran-linkedLumma StealerMuddyWaterPackagist-malwarePeerTimePhishing-as-a-Service (PhaaS)Silver DragonTernDoorUAT-9244Windows Terminal abuseiOS-exploit-kitsupply-chain
What happened
A collection of The Hacker News briefs describing a surge in active threat activity: multiple state-linked APT campaigns (Iran-linked MuddyWater, China-linked UAT-9244/FamousSparrow, Dust Specter, APT28, APT41-linked Silver Dragon) deploying new backdoors and loaders (Dindoor, TernDoor, PeerTime, BruteEntry, SPLITDROP, GHOSTFORM, BadPaw, MeowMeow, Lumma Stealer, BadPaw/MeowMeow, Silver Dragon using Cobalt Strike with Google Drive C2). Several actively exploited vulnerabilities were added to CISA’s KEV catalog (notably CVE-2017-7921, CVE-2026-20122, CVE-2026-22719). Other notable issues include
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 5fc6c374ae7f23c64f81ad9365cfc7bacca10ee97c349551bba3bb1a7f1ae06b
- Enrichment time
- 2026-03-06T13:24:15Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.