DoJ Disrupts Southeast Asia Crypto Fraud Networks, Freezes $3.8 Million in Assets
2026-06-04T07:24:11Z•675f325cfb9b57ce33f47567e1192069aad04074fd81bbe8774778aafe5cb474
active-exploitationapachebotnetcloudflaredesckvb-ratdisruption-weekdoubleclick-malspamfraud-takedowngithub-oauthgoogle-geminihttp2-bombiismiasmamicrosoft-365-androidnginxnotification-poisoningnpmopenai-codexredissupply-chaintoken-theftvs-codeweblogicwinrarwp-maps-pro
What happened
This collection of The Hacker News items reports multiple high-impact incidents and vulnerabilities: a U.S. DoJ "Disruption Week" action freezing $3.8M and takedowns of fraud infrastructure; a notification‑poisoning issue that could hijack Google Gemini on Android; a DoubleClick-based malspam campaign delivering the DesckVB RAT; an AI-found Redis RCE (CVE-2026-23479); Microsoft 365 Android apps leaking account tokens via a leftover debug flag; a one-click GitHub OAuth token theft via VS Code/GitHub.dev; a new HTTP/2 "Bomb" remote DoS affecting NGINX/Apache/IIS/Envoy/Cloudflare; supply‑chain of
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 675f325cfb9b57ce33f47567e1192069aad04074fd81bbe8774778aafe5cb474
- Enrichment time
- 2026-06-04T07:24:11Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.