Berlin Refuses to Pay Hackers Who Stole Data From the City's State Network

2026-08-29T07:24:00Zc22f9e8dd0805c3dd02c747c959c9ef3175b9e723c4e5137fde7749d3e9714dd
CVE-2019-1068CVE-2023-49105CVE-2026-65643CVE-2026-74232CVE-2026-74233CVE-2026-75604CVE-2026-76639CVE-2026-76640AI securityAPT28CISA KEVIoTactive exploitationbotnetcloud securitycritical infrastructurecritical vulnerabilitiescryptocurrency theftdata exfiltrationindustrial systemsmalwareprompt injectionransomwareremote code executionroot accessstate-sponsored activitysupply-chain compromisezero-day

What happened

The feed reports active exploitation of critical vulnerabilities, ransomware/extortion, supply-chain compromises, malware campaigns, and high-impact security flaws affecting enterprise, cloud, networking, industrial, robotic, and AI systems. Notable incidents include exploited Cosmos EVM and PaperCut flaws, ownCloud exploitation against a Philippine nuclear research body, root-level vulnerabilities in ZBT routers and Unitree robots, critical cPanel, ServiceNow, and Next.js issues, APT28-linked targeting of European governments, and campaigns involving wallet-stealing browser extensions, SparkR

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
c22f9e8dd0805c3dd02c747c959c9ef3175b9e723c4e5137fde7749d3e9714dd
Enrichment time
2026-08-29T07:24:00Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.