2026-04-28: Supply chain attacks accelerate with a 26-day pause ending in coordinated compromises across npm episode artwork

EPISODE · Apr 28, 2026 · 23 MIN

2026-04-28: Supply chain attacks accelerate with a 26-day pause ending in coordinated compromises across npm

from Cyber Threat Brief

Show Notes - 2026-04-28 Stories Covered: - Today: - Windows Shell Credential Theft (CVE-2026-32202) (https://thehackernews.com/2026/04/microsoft-confirms-active-exploitation.html) - ASP.NET Core Privilege Escalation (CVE-2026-40372) (https://research.checkpoint.com/2026/27th-april-threat-intelligence-report/) - D-Link Router Botnet Exploitation (CVE-2025-29635) (https://research.checkpoint.com/2026/27th-april-threat-intelligence-report/) - React2Shell Exploitation (CVE-2025-55182) (https://research.checkpoint.com/2026/27th-april-threat-intelligence-report/) - LMDeploy SSRF Under Active Exploitation (CVE-2026-33626) (https://research.checkpoint.com/2026/27th-april-threat-intelligence-report/) - OpenSSH 15-Year-Old Root Access Flaw (CVE-2026-35414) (https://www.securityweek.com/openssh-flaw-allowing-full-root-shell-access-lurked-for-15-years/) - Akira Dominates Cyber Insurance Claims via SonicWall (https://databreaches.net/2026/04/27/one-ransomware-crew-now-drives-half-of-all-cyber-claims-at-bay/) - TeamPCP Supply Chain Campaign Resumes After 26-Day Pause (https://isc.sans.edu/diary/rss/32926) - Elementary-Data PyPI Package Compromised (https://www.bleepingcomputer.com/news/security/pypi-package-with-11m-monthly-downloads-hacked-to-push-infostealer/) - GlassWorm v2 Targets OpenVSX with 73 Sleeper Extensions (https://www.bleepingcomputer.com/news/security/glassworm-malware-attacks-return-via-73-openvsx-sleeper-extensions/) - ShinyHunters Breaches ADT and Medtronic (https://www.bleepingcomputer.com/news/security/home-security-giant-adt-data-breach-affects-55-million-people/) - FIRESTARTER Backdoor on Federal Cisco ASA (https://thehackernews.com/2026/04/weekly-recap-fast16-malware-xchat.html) - UNC6692 Deploys Custom Snow Malware Suite via Teams Impersonation (https://thehackernews.com/2026/04/weekly-recap-fast16-malware-xchat.html) - PhantomCore Exploits TrueConf for Russian Network Breaches (https://thehackernews.com/2026/04/phantomcore-exploits-trueconf.html) - Cursor-Opus AI Agent Deletes Production Database (https://go.theregister.com/feed/www.theregister.com/2026/04/27/cursoropus_agent_snuffs_out_pocketos/) - Robinhood Account Creation Exploited for Phishing (https://www.bleepingcomputer.com/news/security/robinhood-account-creation-flaw-abused-to-send-phishing-emails/) - Silk Typhoon Hacker Extradited to US (https://www.bleepingcomputer.com/news/security/alleged-silk-typhoon-hacker-extradited-to-us-for-cyberespionage/) - Microsoft Entra ID Agent ID Administrator Privilege Escalation (https://thehackernews.com/2026/04/microsoft-patches-entra-id-role-flaw.html) - Unpatched PhantomRPC Windows Privilege Escalation (https://www.darkreading.com/vulnerabilities-threats/unpatched-phantomrpc-flaw-windows-privilege-escalation) - Microsoft Remote Desktop Warning Display Issue (https://www.bleepingcomputer.com/news/microsoft/microsoft-new-remote-desktop-warnings-may-display-incorrectly/) - Outlook.com Outage Causes Sign-In Failures (https://www.bleepingcomputer.com/news/microsoft/microsoft-says-outlookcom-outage-is-causing-sign-in-failures/) - Canada Arrests Three for SMS Blaster Device (https://www.bleepingcomputer.com/news/security/canada-arrests-three-for-operating-sms-blaster-device-in-toronto/) - FTC Warns of $2.1 Billion in Social Media Scam Losses (https://www.bleepingcomputer.com/news/security/ftc-americans-lost-over-21-billion-to-social-media-scams-in-2025/) - Deepfake Voice Attacks Outpacing Defenses (https://www.bleepingcomputer.com/news/security/deepfake-voice-attacks-are-outpacing-defenses-what-security-leaders-should-know/) - Cybersecurity Professionals Face Pay Stagnation (https://go.theregister.com/feed/www.theregister.com/2026/04/27/from_a_massive_skills_gap/) - Fast16 Malware Predates Stuxnet by Five Years (https://thehackernews.com/2026/04/weekly-recap-fast16-malware-xchat.html) - Apple iOS Notification Services (CVE-20 ...

Episode metadata supplied by the publisher feed · Published Apr 28, 2026

Embed this episode

Show Notes - 2026-04-28 Stories Covered: - Today: - Windows Shell Credential Theft (CVE-2026-32202) (https://thehackernews.com/2026/04/microsoft-confirms-active-exploitation.html) - ASP.NET Core Privilege Escalation (CVE-2026-40372) (https://research.checkpoint.com/2026/27th-april-threat-intelligen

Distinct summary based on available episode metadata or transcript content.

NOW PLAYING

2026-04-28: Supply chain attacks accelerate with a 26-day pause ending in coordinated compromises across npm

0:00 23:42

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

Frequently Asked Questions

How long is this episode of Cyber Threat Brief?

This episode is 23 minutes long.

When was this Cyber Threat Brief episode published?

This episode was published on April 28, 2026.

Can I download this Cyber Threat Brief episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!