US cybercrime losses pass $20B for first time as AI boosts online fraud
2026-04-07T19:24:02Z•76f7832173bc87837172c0b4000304b8912bff55024c6be44ff69856d301be2d
AI-enabled fraudCUPS RCECitrix NetScaler exploitationFancy BearFortinet FortiClient EMSOpenAI ChatGPT DNS leakPyPI compromiseTrivy/LiteLLMcredential theftdata exfiltrationnpm/Axios backdoorrouter compromisesupply-chain compromisetrojanized source codezero-day exploitation
What happened
Multiple high-impact security developments: US cybercrime losses hit a record $20.87B in 2025 with AI-driven bots scaling scams; UK NCSC warns Russia-linked APT (Fancy Bear) is compromising SOHO/edge routers (reportedly ~200 organisations and ~5,000 devices) to harvest credentials and host fake sites; researchers disclosed chained vulnerabilities in CUPS that allow unauthenticated remote code execution and root-level file overwrite; Fortinet patched a critical FortiClient Enterprise Management Server (EMS) flaw that was exploited in the wild and added to CISA KEV; active supply-chain attacks (
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- theregister_security
- Record identifier
- 76f7832173bc87837172c0b4000304b8912bff55024c6be44ff69856d301be2d
- Enrichment time
- 2026-04-07T19:24:02Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.