Meta Blocks NSO Group's New WhatsApp Phishing Attack, Files Contempt Order
2026-06-08T19:24:08Z•75c1fb523032abe8918eece251dbda4319e9a4615e73d97c505d2d29ad4969f8
Asin Android spywareCISA KEVCVE-2026-20230CVE-2026-20245CVE-2026-28318CVE-2026-3300CVE-2026-50751Check PointCisco SD-WANCisco Unified CMEverest Forms ProGitHub compromiseIKEv1IronWormMiasma wormNSO GroupPCPJackSMTP relay abuseSolarWinds Serv-UVerdantBamboo/BRICKSTORM','OP-512','IIS web shell'WhatsApp phishingcloud hijackcontempt ordernpm supply-chainsupply chain
What happened
Multiple high-impact security incidents and active exploitations were reported: Meta blocked NSO Group‑linked WhatsApp spear‑phishing and filed a contempt order; critical VPN certificate‑validation bypass in Check Point IKEv1 deployments (CVE-2026-50751) is being exploited; Cisco SD‑WAN Manager (CVE-2026-20245) and SolarWinds Serv‑U (CVE-2026-28318) are under active exploitation and KEV listing respectively; Everest Forms Pro RCE (CVE-2026-3300) is actively exploited; Cisco Unified CM (CVE-2026-20230) has public PoC; large supply‑chain incidents include the Miasma worm hitting Microsoft GitHub
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 75c1fb523032abe8918eece251dbda4319e9a4615e73d97c505d2d29ad4969f8
- Enrichment time
- 2026-06-08T19:24:08Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.