DoJ Disrupts Southeast Asia Crypto Fraud Networks, Freezes $3.8 Million in Assets

2026-06-04T07:24:11Z675f325cfb9b57ce33f47567e1192069aad04074fd81bbe8774778aafe5cb474
active-exploitationapachebotnetcloudflaredesckvb-ratdisruption-weekdoubleclick-malspamfraud-takedowngithub-oauthgoogle-geminihttp2-bombiismiasmamicrosoft-365-androidnginxnotification-poisoningnpmopenai-codexredissupply-chaintoken-theftvs-codeweblogicwinrarwp-maps-pro

What happened

This collection of The Hacker News items reports multiple high-impact incidents and vulnerabilities: a U.S. DoJ "Disruption Week" action freezing $3.8M and takedowns of fraud infrastructure; a notification‑poisoning issue that could hijack Google Gemini on Android; a DoubleClick-based malspam campaign delivering the DesckVB RAT; an AI-found Redis RCE (CVE-2026-23479); Microsoft 365 Android apps leaking account tokens via a leftover debug flag; a one-click GitHub OAuth token theft via VS Code/GitHub.dev; a new HTTP/2 "Bomb" remote DoS affecting NGINX/Apache/IIS/Envoy/Cloudflare; supply‑chain of

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
675f325cfb9b57ce33f47567e1192069aad04074fd81bbe8774778aafe5cb474
Enrichment time
2026-06-04T07:24:11Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.