Don't pay Vect a ransom - your data's likely already wiped out

2026-04-28T19:24:04Z1e19933ed5364b7e4d0fe8c32a039f40fc9719d4ef161b63b6adc3740044c67b
adtbackdoorcarnivalcheck-point-researchcheckmarxchina-linked-actorscisadata-breachev-chargersfast16firestarteriotlapsus$litellmmicrosoftpitney-bowesremote-desktoprouter-compromisesabotage-malwareshinyhunterssocial-engineeringsupply-chaintrivyvectwiper

What happened

Feed of security news covering a wave of high-impact incidents and trends: Check Point Research warns that Vect is a destructive wiper (not recoverable ransomware) used in supply‑chain compromises tied to Trivy and LiteLLM; multiple large-scale data-exfiltration claims by ShinyHunters (Pitney Bowes, ADT, Carnival) and other breach disclosures; ongoing supply‑chain attacks affecting security/dev tooling (Checkmarx, Lapsus$); CISA/UK response to a Firestarter backdoor on a federal network; discovery of FAST16 sabotage malware that may predate Stuxnet; demonstrated large-scale IoT/EV charger weak

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
theregister_security
Record identifier
1e19933ed5364b7e4d0fe8c32a039f40fc9719d4ef161b63b6adc3740044c67b
Enrichment time
2026-04-28T19:24:04Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.