Fixed Intel

Knowledge Hub

Guides, playbooks, and learning resources to level up your cybersecurity knowledge and keep your organization secure.

Vulnerabilities

ISC Stormcast For Tuesday, April 28th, 2026 https://isc.sans.edu/podcastdetail/9908, (Tue, Apr 28th)

SANS ISC
Vulnerabilities

ISC Stormcast For Tuesday, April 28th, 2026 https://isc.sans.edu/podcastdetail/9908, (Tue, Apr 28th)

No description available.

SANS ISCApr 28, 20261m1
Robinhood account creation flaw abused to send phishing emails
BleepingComputer
Malware & Threats

Robinhood account creation flaw abused to send phishing emails

Online trading platform Robinhood's account creation process was exploited by threat actors to inject phishing messages into legitimate emails, tricking users into believing their accounts had suspicious activity.

BleepingComputerApr 27, 20263m1
GlassWorm malware attacks return via 73 OpenVSX "sleeper" extensions
BleepingComputer
Malware & Threats

GlassWorm malware attacks return via 73 OpenVSX "sleeper" extensions

A new wave of the Glassworm campaign is targeting the OpenVSX ecosystem with 73 "sleeper" extensions that turn malicious after an update.

BleepingComputerApr 27, 20263m1
Industry News

UNC6692 Combines Social Engineering, Malware, Cloud Abuse

Dark Reading
Industry News

UNC6692 Combines Social Engineering, Malware, Cloud Abuse

A newly discovered threat actor is using Microsoft Teams, AWS S3 buckets, and custom "Snow" malware in a multipronged campaign.

Dark ReadingApr 27, 20261m1
Canada arrests three for operating “SMS blaster” device in Toronto
BleepingComputer
Malware & Threats

Canada arrests three for operating “SMS blaster” device in Toronto

Canadian authorities have arrested three men for operating an "SMS blaster" device that pretends to be a cellular tower to send phishing texts to nearby phones.

BleepingComputerApr 27, 20263m1
Alleged Silk Typhoon hacker extradited to US for cyberespionage
BleepingComputer
Malware & Threats

Alleged Silk Typhoon hacker extradited to US for cyberespionage

A Chinese national accused of carrying out cyberespionage operations for China's intelligence services has been extradited from Italy to the United States to face criminal charges.

BleepingComputerApr 27, 20262m1
FTC: Americans lost over $2.1 billion to social media scams in 2025
BleepingComputer
Malware & Threats

FTC: Americans lost over $2.1 billion to social media scams in 2025

The U.S. Federal Trade Commission (FTC) warned of a massive increase in losses from social media scams since 2020, exceeding $2.1 billion in 2025.

BleepingComputerApr 27, 20263m1
Industry News

Unpatched 'PhantomRPC' Flaw in Windows Enables Privilege Escalation

Dark Reading
Industry News

Unpatched 'PhantomRPC' Flaw in Windows Enables Privilege Escalation

A researcher discovered five different exploit paths that stem from an architectural weakness in how Windows' Remote Procedure Call (RPC) mechanism handles connections to unavailable services.

Dark ReadingApr 27, 20261m1
PyPI package with 1.1M monthly downloads hacked to push infostealer
BleepingComputer
Malware & Threats

PyPI package with 1.1M monthly downloads hacked to push infostealer

An attacker pushed a malicious version of the popular elementary-data package Python Package Index (PyPI) to steal sensitive developer data and cryptocurrency wallets.

BleepingComputerApr 27, 20263m1
Home security giant ADT data breach affects 5.5 million people
BleepingComputer
Malware & Threats

Home security giant ADT data breach affects 5.5 million people

The ShinyHunters extortion group stole the personal information of 5.5 million individuals after breaching the systems of home security giant ADT earlier this month, according to data breach notification service Have I Been Pwned.

BleepingComputerApr 27, 20263m2
Webinar: Spotting cyberattacks before they begin
BleepingComputer
Malware & Threats

Webinar: Spotting cyberattacks before they begin

On Thursday, April 30 at 2:00 PM ET, BleepingComputer will host a live webinar with threat intelligence company Flare and threat intelligence researcher Tammy Harper, exploring how security teams can identify early warning signs of attacks before they escalate into incidents.

BleepingComputerApr 27, 20262m1
Checkmarx Confirms GitHub Repository Data Posted on Dark Web After March 23 Attack
The Hacker News
Industry News

Checkmarx Confirms GitHub Repository Data Posted on Dark Web After March 23 Attack

Checkmarx data surfaced after March 23, 2026 supply chain attack, prompting repository lockdown and investigation, raising exposure concerns.

The Hacker NewsApr 27, 20262m1