Security Affairs newsletter Round 574 by Pierluigi Paganini – INTERNATIONAL EDITION
Security Affairs newsletter Round 574 by Pierluigi Paganini – INTERNATIONAL EDITION
Publish Date: 2026-04-26 04:42:00
Source Domain: securityaffairs.com
Security Affairs newsletter Round 574 by Pierluigi Paganini – INTERNATIONAL EDITION
Pierluigi Paganini
April 26, 2026

A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box.
Enjoy a new round of the weekly SecurityAffairs newsletter, including the international press.
| U.S. CISA adds SimpleHelp, Samsung, and D-Link flaws to its Known Exploited Vulnerabilities catalog |
| Over 400,000 sites at risk as hackers exploit Breeze Cache plugin flaw (CVE-2026-3844) |
| CISA reports persistent FIRESTARTER backdoor on Cisco ASA device in federal network |
| 12-year-old Pack2TheRoot bug lets Linux users gain root privileges |
| Signal phishing campaign targets Germany’s Bundestag President Julia Klöckner |
| Checkmarx supply chain attack impacts Bitwarden npm distribution path |
| China-linked threat actors use consumer device botnets to evade detection, warn UK and partners |
| Luxury cosmetics giant Rituals discloses data breach impacting member personal details |
| iOS Flaw Let Deleted Notifications Linger, Apple Issues Fix |
| RAMP Uncovered: Anatomy of Russia’s Ransomware Marketplace |
| U.S. CISA adds a flaw in Microsoft Defender to its Known Exploited Vulnerabilities catalog |
| Microsoft Graph API misused by new GoGra Linux malware for hidden communication |
| DDoS wave continues as Mastodon hit after Bluesky incident |
| Mirai Botnet exploits CVE-2025-29635 to target legacy D-Link routers |
| Microsoft out-of-band updates fixed critical ASP.NET Core privilege escalation flaw |
| Critical BRIDGE:BREAK flaws impact Lantronix and Silex Technology converters |
| Venezuela energy sector targeted by highly destructive Lotus wiper |
| Ransomware negotiator caught secretly assisting BlackCat extortion scheme |
| North Korea’s Lazarus APT stole $290M from Kelp DAO |
| The US NSA is using Anthropic’s Claude Mythos despite supply chain risk |
| U.S. CISA adds Cisco Catalyst, Kentico Xperience,… |