Fake Linux leader using Slack to con devs into giving up their secrets
2026-04-13T19:23:58Z•71a978c49022b2f47374fe7cb20eacf88eef8b4909e4e8288879129faf3cd461
ai-assisted-exploitationcredential-theftdata-breachextortionmalicious-pdfopen-source-securityphishingransomwaresocial-engineeringsupply-chainthird-party-compromisezero-day
What happened
A broad set of infosec incidents and trends reported by The Register: targeted social‑engineering against open source developers via Slack (impersonating a Linux Foundation official) that led to credential theft and bogus root‑certificate abuse; multiple large data breaches and extortion incidents (Booking.com, Basic‑Fit, Rockstar/ShinyHunters, ChipSoft/FleetWave outages, Hungarian government credential leak, CPUID download hijack); supply‑chain compromises infecting popular OSS tools and stealing secrets at scale; an actively exploited Adobe Reader zero‑day used to profile victims; and an AI‑
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- theregister_security
- Record identifier
- 71a978c49022b2f47374fe7cb20eacf88eef8b4909e4e8288879129faf3cd461
- Enrichment time
- 2026-04-13T19:23:58Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.