Google June 2026 Android Update Patches 124 Flaws, One Actively Exploited
2026-06-03T01:24:15Z•e486e8f2773b0778ab7b3fdc27a7bee4a720aee4cf80426dbc0a69a4d6206b93
APT activityAndroidMarimoPAN-OSWebLogicWinRARWordPressactive exploitationauthentication bypassbotnet takedowncredential theftnpm supply chainnuget supply chainpath traversalphishingprivilege escalationremote code executionsupply chain compromise
What happened
Multiple high-impact incidents reported: Google’s June 2026 Android update remediates 124 flaws including an actively exploited Framework privilege-escalation (CVE-2025-48595). Gamaredon weaponizes a WinRAR path-traversal (CVE-2025-8088) to deliver HTML-app payloads (GammaPhish → GammaWorm/GammaSteel). CISA added Oracle WebLogic CVE-2024-21182 to its KEV catalog due to active exploitation. PAN-OS/GlobalProtect authentication-bypass CVE-2026-0257 is being exploited in the wild. Attackers exploited Marimo CVE-2026-39987 to steal cloud credentials and used an LLM agent for post-compromise tasks.O
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- e486e8f2773b0778ab7b3fdc27a7bee4a720aee4cf80426dbc0a69a4d6206b93
- Enrichment time
- 2026-06-03T01:24:15Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.