Fake Linux leader using Slack to con devs into giving up their secrets

2026-04-13T19:23:58Z71a978c49022b2f47374fe7cb20eacf88eef8b4909e4e8288879129faf3cd461
ai-assisted-exploitationcredential-theftdata-breachextortionmalicious-pdfopen-source-securityphishingransomwaresocial-engineeringsupply-chainthird-party-compromisezero-day

What happened

A broad set of infosec incidents and trends reported by The Register: targeted social‑engineering against open source developers via Slack (impersonating a Linux Foundation official) that led to credential theft and bogus root‑certificate abuse; multiple large data breaches and extortion incidents (Booking.com, Basic‑Fit, Rockstar/ShinyHunters, ChipSoft/FleetWave outages, Hungarian government credential leak, CPUID download hijack); supply‑chain compromises infecting popular OSS tools and stealing secrets at scale; an actively exploited Adobe Reader zero‑day used to profile victims; and an AI‑

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
theregister_security
Record identifier
71a978c49022b2f47374fe7cb20eacf88eef8b4909e4e8288879129faf3cd461
Enrichment time
2026-04-13T19:23:58Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Fake Linux leader using Slack to con devs into giving up their secrets · Baitaphish