The MSP Guide to Using AI-Powered Risk Management to Scale Cybersecurity

2026-03-06T13:24:15Z5fc6c374ae7f23c64f81ad9365cfc7bacca10ee97c349551bba3bb1a7f1ae06b
APTAPT28BruteEntryCISA-KEVCVE-2017-7921CVE-2026-20122CVE-2026-22719China-linkedClickFixCorunaDindoorDust SpecterFamousSparrowIran-linkedLumma StealerMuddyWaterPackagist-malwarePeerTimePhishing-as-a-Service (PhaaS)Silver DragonTernDoorUAT-9244Windows Terminal abuseiOS-exploit-kitsupply-chain

What happened

A collection of The Hacker News briefs describing a surge in active threat activity: multiple state-linked APT campaigns (Iran-linked MuddyWater, China-linked UAT-9244/FamousSparrow, Dust Specter, APT28, APT41-linked Silver Dragon) deploying new backdoors and loaders (Dindoor, TernDoor, PeerTime, BruteEntry, SPLITDROP, GHOSTFORM, BadPaw, MeowMeow, Lumma Stealer, BadPaw/MeowMeow, Silver Dragon using Cobalt Strike with Google Drive C2). Several actively exploited vulnerabilities were added to CISA’s KEV catalog (notably CVE-2017-7921, CVE-2026-20122, CVE-2026-22719). Other notable issues include

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
5fc6c374ae7f23c64f81ad9365cfc7bacca10ee97c349551bba3bb1a7f1ae06b
Enrichment time
2026-03-06T13:24:15Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · The MSP Guide to Using AI-Powered Risk Management to Scale Cybersecurity · Baitaphish