Troops’ phones gave away location data to foreign adversaries

2026-05-29T07:23:56Z064c6f43a93d32a92548faf5a99f04991dfb5f6977f7227e0bc838f2b6a10840
0-dayCERT-Inactive-exploitationai-securitybotnetciscocloud-keyscredentials-exposuredata-leakdrupalemergency-patchingextortiongithub-compromiseincident-responselinux-kernellocation-trackingmobile-securitymodel-sandboxingnginxnpm-attackpatch-managementransomwaresupply-chainvulnerability

What happened

A batch of The Register security stories highlights a surge in high-impact incidents and emerging threats: military personnel’s smartphones leaked location data via commercial tracking services; a disgruntled researcher threatened public dumps of multiple Windows 0‑days (three reportedly actively exploited); multiple high-severity vulnerabilities and rapid exploit activity (Drupal critical patch warning, NGINX 'Rift' probes/exploitation, a Linux kernel flaw exposing root-only files, and a Cisco multi-tenant Secure Workload admin bug); large-scale breaches and crimeware activity (Carnival data泄

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
theregister_security
Record identifier
064c6f43a93d32a92548faf5a99f04991dfb5f6977f7227e0bc838f2b6a10840
Enrichment time
2026-05-29T07:23:56Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.