Iran-Linked Hackers Breach FBI Director’s Personal Email, Hit Stryker With Wiper Attack

2026-03-30T07:24:11Zd5b70110f9f3eb3e7d8357ce2ab683bccd829db7bf0c5e811c81f60957d3e484
active-exploitationai-securitycitrixcredential-theftf5-big-ipios-exploit-kitphishingpyPIransomwarestate-sponsoredsupply-chainteamPCPvulnerabilityweb-attack

What happened

A cluster of high-impact incidents and active exploitation activity: Iran-linked Handala breached FBI Director Kash Patel’s personal email and leaked data while a separate operation deployed a wiper against Stryker; Citrix NetScaler (CVE-2026-3055, memory overread) is under active reconnaissance; CISA added F5 BIG-IP APM (CVE-2025-53521, RCE) to its KEV list due to observed exploitation. Multiple supply-chain compromises continue—TeamPCP pushed malicious versions of telnyx and backdoored litellm via Trivy/KICS compromises on PyPI—and Open VSX’s pre-publish bug allowed a malicious VS Code ext.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
d5b70110f9f3eb3e7d8357ce2ab683bccd829db7bf0c5e811c81f60957d3e484
Enrichment time
2026-03-30T07:24:11Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.