+ Alleged 'Hafnium' hacker-for-hire extradited to the United States; Checkmarx-style supply chain attack hits password manager Bitwarden; and more
Can't view this message? Click here to view it online.
iTnews

WEEKLY SECURITY WRAP

Tuesday April 28, 2026

  Security  

'Firestarter' malware survives Cisco firewall patches

Pull mains plug on firewalls to kill the malware, CISA advises.

By Juha Saarinen

 

Latest Security News


Alleged 'Hafnium' hacker-for-hire extradited to the United States
  Security  

Alleged 'Hafnium' hacker-for-hire extradited to the United States

Accused of compromising more than 12,700 organisations.

By Juha Saarinen

 
Checkmarx-style supply chain attack hits password manager Bitwarden
  Security  

Checkmarx-style supply chain attack hits password manager Bitwarden

Command line interface version of tool compromised.

By Juha Saarinen

 
US State Dept orders global warning about alleged AI thefts by DeepSeek, other Chinese firms
  Security  

US State Dept orders global warning about alleged AI thefts by DeepSeek, other Chinese firms

Targets distillation.

By Raphael Satter

 
 
 
 
Attacker embeds Claude Code in mass credential harvesting op
  Security  

Attacker embeds Claude Code in mass credential harvesting op

Bissa scanner compromised more than 900 organisations.

By Juha Saarinen

 
Microsoft to integrate Anthropic's Mythos into its security development program
  Security  

Microsoft to integrate Anthropic's Mythos into its security development program

Will help identify ⁠vulnerabilities and develop fixes faster.

By Staff Writer

 
ANZ Banking Group names acting CISO
  Financial Services  

ANZ Banking Group names acting CISO

Following the retirement of Dr Maria Milosavljevic.

By Ry Crozier

 
2Apply raked for 'dark patterns' used to snare renters' data
  Security  

2Apply raked for 'dark patterns' used to snare renters' data

Excessive data collection criticised.

By Juha Saarinen

 
Meta to start capturing employee mouse movements, keystrokes
  Software  

Meta to start capturing employee mouse movements, keystrokes

For AI training, not performance assessments.

By Katie Paul and Jeff Horwitz

 
 
 
 

Featured whitepaper


 
 

MOST POPULAR


Attacker embeds Claude Code in mass credential harvesting op
  Security  

Attacker embeds Claude Code in mass credential harvesting op

By Juha Saarinen

ANZ Banking Group names acting CISO
  Financial Services  

ANZ Banking Group names acting CISO

By Ry Crozier

NSW Treasury staffer allegedly exfiltrated 5600 sensitive documents
  Security  

NSW Treasury staffer allegedly exfiltrated 5600 sensitive documents

By Ry Crozier

Services Australia describes fraud, debt-related machine learning use cases
  Security  

Services Australia describes fraud, debt-related machine learning use cases

By Ry Crozier

ASIC, APRA among regulators monitoring Anthropic's Mythos
  Security  

ASIC, APRA among regulators monitoring Anthropic's Mythos

By Scott Murdoch and Yantoultra Ngui

 
 
unsubscribe