Don't pay Vect a ransom - your data's likely already wiped out
2026-04-28T19:24:04Z•1e19933ed5364b7e4d0fe8c32a039f40fc9719d4ef161b63b6adc3740044c67b
adtbackdoorcarnivalcheck-point-researchcheckmarxchina-linked-actorscisadata-breachev-chargersfast16firestarteriotlapsus$litellmmicrosoftpitney-bowesremote-desktoprouter-compromisesabotage-malwareshinyhunterssocial-engineeringsupply-chaintrivyvectwiper
What happened
Feed of security news covering a wave of high-impact incidents and trends: Check Point Research warns that Vect is a destructive wiper (not recoverable ransomware) used in supply‑chain compromises tied to Trivy and LiteLLM; multiple large-scale data-exfiltration claims by ShinyHunters (Pitney Bowes, ADT, Carnival) and other breach disclosures; ongoing supply‑chain attacks affecting security/dev tooling (Checkmarx, Lapsus$); CISA/UK response to a Firestarter backdoor on a federal network; discovery of FAST16 sabotage malware that may predate Stuxnet; demonstrated large-scale IoT/EV charger weak
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- theregister_security
- Record identifier
- 1e19933ed5364b7e4d0fe8c32a039f40fc9719d4ef161b63b6adc3740044c67b
- Enrichment time
- 2026-04-28T19:24:04Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.