CyberSecBrief

Curated cybersecurity briefings on active threats, vulnerabilities, and emerging risks


Daily Cybersecurity Briefing (16 March 2026)

Published: Loading…

At a Glance

  • The AppsFlyer Web SDK served obfuscated crypto-hijacking JavaScript from 9–11 March, replacing Bitcoin, Ethereum, Solana, Ripple, and TRON wallet addresses.
  • GlassWorm abused 72 Open VSX extensions via extensionPack and extensionDependencies fields to propagate malicious code to developers transitively.
  • CVE-2026-23813 in HPE Aruba AOS-CX switches allows unauthenticated remote attackers to reset admin passwords, scoring a CVSS 9.8.
  • OpenClaw AI agent's link preview behaviour in Telegram and Discord enables indirect prompt injection to exfiltrate sensitive data without user interaction.
  • Telus Digital confirmed a cyberattack by ShinyHunters that may have resulted in the loss of up to a petabyte of data.
  • Microsoft issued an out-of-band hotpatch KB5084597 for Windows 11 Enterprise fixing three RRAS RCE flaws tracked as CVE-2026-25172, -25173, and -26111.

Summary

Supply-chain attacks dominated the threat landscape, with the AppsFlyer Web SDK compromised between 9 and 11 March to deliver obfuscated JavaScript that silently replaced cryptocurrency wallet addresses — covering Bitcoin, Ethereum, Solana, Ripple, and TRON — with attacker-controlled values. The payload was served directly from AppsFlyer's own SDK domain and exfiltrated original address data to attacker infrastructure, with AppsFlyer characterising the incident only as an "availability issue." Separately, the GlassWorm campaign escalated its reach by abusing 72 Open VSX registry extensions through extensionPack and extensionDependencies fields, enabling malicious code to propagate transitively without direct embedding in each listing.

Critical infrastructure vulnerabilities came to the fore with CVE-2026-23813, a CVSS 9.8 flaw in the web management interface of multiple HPE Aruba AOS-CX switch series, permitting unauthenticated remote attackers to bypass authentication and reset administrator passwords. The same patch release addressed three additional high-severity command injection flaws and a medium-severity open redirect vulnerability, with HPE confirming no known exploitation at time of publication.

Microsoft issued out-of-band hotpatch KB5084597 for Windows 11 Enterprise devices enrolled in its hotpatch programme, resolving three remote code execution vulnerabilities — CVE-2026-25172, CVE-2026-25173, and CVE-2026-26111 — in the Windows Routing and Remote Access Service (RRAS) management tool. The hotpatch applies fixes via in-memory patching, allowing mission-critical systems to receive the update without a reboot.

AI agent security emerged as a distinct concern following a warning from China's CNCERT regarding OpenClaw, an open-source autonomous AI agent whose weak default configurations and privileged system access expose it to indirect prompt injection attacks. Link preview rendering in messaging platforms such as Telegram and Discord can be exploited to silently transmit sensitive data to attacker-controlled domains, while malicious OpenClaw installer repositories have been observed distributing information stealers and proxy malware.

Data breaches affected organisations across multiple sectors, with Canadian outsourcer Telus Digital confirming an attack by ShinyHunters that may have resulted in the loss of up to a petabyte of data. Canadian retailer Loblaw also disclosed that a criminal third party accessed customer names, phone numbers, and email addresses from a non-critical network segment, with passwords, health information, and payment data stated as unaffected.

Highlights of the Day

OpenClaw AI Agent Vulnerabilities Expose Systems to Prompt Injection Attacks

China's CNCERT has issued a warning about security weaknesses in OpenClaw, an open-source autonomous AI agent, citing weak default configurations and privileged system access as key risk factors. Researchers have demonstrated that the agent's link preview behaviour in messaging platforms such as Telegram and Discord can be exploited via indirect prompt injection to silently exfiltrate sensitive data to attacker-controlled domains without any user interaction. Separately, threat actors have been distributing malicious GitHub repositories disguised as OpenClaw installers to deploy information stealers and proxy malware, with at least one malicious repository surfacing as a top result in Bing's AI-powered search suggestions.

Microsoft Issues Out-of-Band Hotpatch for Windows 11 Remote Code Execution Flaws

Microsoft has released an out-of-band hotpatch update (KB5084597) for Windows 11 Enterprise devices enrolled in its hotpatch programme, addressing three remote code execution vulnerabilities in the Windows Routing and Remote Access Service (RRAS) management tool. Tracked as CVE-2026-25172, CVE-2026-25173, and CVE-2026-26111, the flaws could be exploited by an authenticated domain attacker who tricks a user into connecting to a malicious server via the RRAS Snap-in. Unlike standard cumulative updates, hotpatch updates apply fixes via in-memory patching of running processes, allowing mission-critical devices to receive the security fix without requiring a reboot.

AppsFlyer SDK Compromised to Hijack Cryptocurrency Wallet Transactions

Profero confirmed that the AppsFlyer Web SDK was serving obfuscated malicious JavaScript between approximately 22:45 UTC on 9 March and 11 March 2026, replacing cryptocurrency wallet addresses entered by users with attacker-controlled values targeting Bitcoin, Ethereum, Solana, Ripple, and TRON. The payload, delivered from AppsFlyer's own SDK domain, installed browser hooks to intercept wallet addresses from form inputs and network requests, whilst also exfiltrating the original address data to attacker infrastructure. AppsFlyer — whose SDK is integrated into products from organisations including TikTok, Netflix, and Ubisoft — has not confirmed a compromise, characterising the incident only as an "availability issue."

Source: Profero

Critical HPE Aruba Switch Flaw Enables Unauthenticated Admin Password Reset

HPE has patched a critical vulnerability (CVE-2026-23813, CVSS 9.8) in the web-based management interface of multiple Aruba Networking AOS-CX switch series, which could allow an unauthenticated remote attacker to bypass authentication controls and reset administrator passwords. The flaw affects a broad range of switch models across the CX 4100i, 6000, 6100, 6200, 6300, 6400, 8320, 8325, 8360, 9300, and 10000 series. The same update addresses three additional high-severity command injection vulnerabilities and a medium-severity open redirect flaw; HPE reports no known exploitation of any of these issues in the wild.

Loblaw Discloses Breach Exposing Customer Names and Contact Details

Canadian retail giant Loblaw has confirmed that a criminal third party accessed basic customer information — including names, phone numbers, and email addresses — after suspicious activity was detected on a contained, non-critical segment of its IT network. The company states that passwords, health information, credit card data, and PC Financial accounts were not affected. The number of customers impacted has not been disclosed, and no ransomware group has claimed responsibility at this stage.

Daily Coverage

Developments
Appsflyer Sdk CompromiseGlassworm Vsx CampaignHpe Aruba CVE-2026-23813Openclaw Prompt Injection
Vulnerabilities
CVE-2026-0866CVE-2026-25172CVE-2026-23813CVE-2026-25173CVE-2026-26111CVE-2026-29000Pac4J-Jwt 4.0 (Critical)CVE-2026-4158CVE-2026-2049CVE-2026-2046CVE-2025-13957Ecostruxure™ It Data Center Expert (Formerly Known As Struxureware Data Center Expert) V9.0 And Prior (High)