22 BRIDGE:BREAK Flaws Expose Thousands of Lantronix and Silex Serial-to-IP Converters
2026-04-21T19:24:14Z•7ecc499f4827157011dc13f65fa3ff4ae87dc312904cf43b4ccc173e800cffc9
Android malwareAnthropicAntigravity IDEApache ActiveMQBRIDGE:BREAKCISA KEVCVE-2024-3721CVE-2026-20184CVE-2026-34197CVE-2026-5760CiscoHandyPayIoTLantronixMCPMicrosoft Defender zero-dayMiraiNFC data theft','ZionSiphon','OT malware','Vercel breach','soph.NGateNexcoriumRCESGLangSilexprompt-injectionserial-to-ip
What happened
A wide-ranging set of security incidents and disclosures: researchers disclosed 22 "BRIDGE:BREAK" flaws in Lantronix and Silex serial‑to‑IP converters ( ~20,000 devices exposed) that allow device takeover and data tampering; multiple high‑severity RCEs and design flaws were reported across the ecosystem (SGLang CVE‑2026‑5760, an Anthropic MCP design RCE, Google Antigravity IDE prompt‑injection), and CISA added several actively exploited flaws to its KEV including Apache ActiveMQ CVE‑2026‑34197. Cisco released patches for critical identity/Webex issues (CVE‑2026‑20184). Other notable activity:
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 7ecc499f4827157011dc13f65fa3ff4ae87dc312904cf43b4ccc173e800cffc9
- Enrichment time
- 2026-04-21T19:24:14Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.