Meta Blocks NSO Group's New WhatsApp Phishing Attack, Files Contempt Order

2026-06-08T19:24:08Z75c1fb523032abe8918eece251dbda4319e9a4615e73d97c505d2d29ad4969f8
Asin Android spywareCISA KEVCVE-2026-20230CVE-2026-20245CVE-2026-28318CVE-2026-3300CVE-2026-50751Check PointCisco SD-WANCisco Unified CMEverest Forms ProGitHub compromiseIKEv1IronWormMiasma wormNSO GroupPCPJackSMTP relay abuseSolarWinds Serv-UVerdantBamboo/BRICKSTORM','OP-512','IIS web shell'WhatsApp phishingcloud hijackcontempt ordernpm supply-chainsupply chain

What happened

Multiple high-impact security incidents and active exploitations were reported: Meta blocked NSO Group‑linked WhatsApp spear‑phishing and filed a contempt order; critical VPN certificate‑validation bypass in Check Point IKEv1 deployments (CVE-2026-50751) is being exploited; Cisco SD‑WAN Manager (CVE-2026-20245) and SolarWinds Serv‑U (CVE-2026-28318) are under active exploitation and KEV listing respectively; Everest Forms Pro RCE (CVE-2026-3300) is actively exploited; Cisco Unified CM (CVE-2026-20230) has public PoC; large supply‑chain incidents include the Miasma worm hitting Microsoft GitHub

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
75c1fb523032abe8918eece251dbda4319e9a4615e73d97c505d2d29ad4969f8
Enrichment time
2026-06-08T19:24:08Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.