The Good, the Bad and the Ugly in Cybersecurity – Week 15
FBI disrupts GRU router hijacking operation, ClickFix sidesteps Apple's Terminal mitigation, and Iranian actors exploit PLCs across U.S. infrastructure.
Related Vulnerabilities
- CVE-2026-4158: KeePassXC OpenSSL Configuration Uncontrolled Search Path Element Local Privilege Escalation Vulnerab HIGH
- CVE-2026-35657: OpenClaw before 2026.3.25 contains an authorization bypass vulnerability in the HTTP /sessions/:sess HIGH
- CVE-2026-35661: OpenClaw before 2026.3.25 contains an authorization bypass vulnerability in Telegram callback query MEDIUM
- CVE-2026-34946: Wasmtime has host panic when Winch compiler executes `table.fill` MEDIUM
- CVE-2026-5448: X.509 date buffer overflow in wolfSSL_X509_notAfter / wolfSSL_X509_notBefore. A buffer overflow may LOW
Related Coverage
Threat Actors