FBI Warns Russian Hackers Target Signal, WhatsApp in Mass Phishing Attacks
2026-03-22T13:24:09Z•7e104bac406e232d7932c60f8fa17f6c6d17399737c4cdb4fabe31934718d1d7
account-takeoverandroid-banking-malwarebyovdcanisterwormcisa-KEVcisco-fmcedr-evasiongithub-actions-compromiseios-exploit-kitiot-botnetsknown-exploited-vulnerabilitieslangflowmagento-polyshellmessaging-appsoracle-identity-managerphishingrussian-affiliatedsupply-chain-attacktrivyunauthenticated-rce
What happened
A set of high-impact incidents and active threats reported by The Hacker News (Mar 18–21, 2026): Russian-affiliated actors are conducting mass phishing campaigns against commercial messaging apps (Signal, WhatsApp) for account takeover; multiple critical, remotely-exploitable RCEs and zero-days are being patched/exploited (notably Oracle Identity Manager CVE-2026-21992, Cisco FMC CVE-2026-20131, GNU telnetd CVE-2026-32746, Langflow CVE-2026-33017) with high/critical CVSS scores; Trivy supply-chain compromises and a self-propagating CanisterWorm plus a separate GitHub Actions compromise are exfi
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 7e104bac406e232d7932c60f8fa17f6c6d17399737c4cdb4fabe31934718d1d7
- Enrichment time
- 2026-03-22T13:24:09Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.