FBI Warns Russian Hackers Target Signal, WhatsApp in Mass Phishing Attacks

2026-03-22T13:24:09Z7e104bac406e232d7932c60f8fa17f6c6d17399737c4cdb4fabe31934718d1d7
account-takeoverandroid-banking-malwarebyovdcanisterwormcisa-KEVcisco-fmcedr-evasiongithub-actions-compromiseios-exploit-kitiot-botnetsknown-exploited-vulnerabilitieslangflowmagento-polyshellmessaging-appsoracle-identity-managerphishingrussian-affiliatedsupply-chain-attacktrivyunauthenticated-rce

What happened

A set of high-impact incidents and active threats reported by The Hacker News (Mar 18–21, 2026): Russian-affiliated actors are conducting mass phishing campaigns against commercial messaging apps (Signal, WhatsApp) for account takeover; multiple critical, remotely-exploitable RCEs and zero-days are being patched/exploited (notably Oracle Identity Manager CVE-2026-21992, Cisco FMC CVE-2026-20131, GNU telnetd CVE-2026-32746, Langflow CVE-2026-33017) with high/critical CVSS scores; Trivy supply-chain compromises and a self-propagating CanisterWorm plus a separate GitHub Actions compromise are exfi

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
7e104bac406e232d7932c60f8fa17f6c6d17399737c4cdb4fabe31934718d1d7
Enrichment time
2026-03-22T13:24:09Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.