Curated cybersecurity briefings on active threats, vulnerabilities, and emerging risks
Daily Cybersecurity Briefing (10 April 2026)
Published: Loading…
At a Glance
- Marimo WebSocket endpoint /terminal/ws allows pre-authentication remote code execution, enabling unauthorised shell access via PTY sessions on vulnerable servers prior to version 0.23.0.
- Device Bound Session Credentials in Chrome 146 bind authentication cookies to TPM or Secure Enclave keys, mitigating infostealer malware session theft across Windows and macOS systems.
- Smart Slider 3 Pro update infrastructure was compromised, distributing backdoored plugin versions that enable PHP-based remote command execution and credential exfiltration in WordPress environments.
- Storm-2755 conducts AiTM phishing campaigns against Canadian employees, capturing session tokens to alter payroll details and redirect salary payments through compromised Microsoft 365 accounts.
- Adobe Reader zero-day exploitation via malicious PDFs has persisted for months, using privileged APIs to exfiltrate system data and deliver secondary payloads across targeted environments.
- APT35 maintains pre-positioned access across Gulf Cooperation Council networks, leveraging historical vulnerabilities and reconnaissance activity tied to infrastructure later associated with regional cyber operations.
Summary
Marimo WebSocket authentication failure enables unauthorised remote shell access through /terminal/ws endpoints prior to version 0.23.0. Attackers exploit the vulnerability to obtain PTY-backed shells and execute commands on notebook server infrastructure. Exploitation activity has been observed following public disclosure with confirmed credential theft.
Device Bound Session Credentials introduced in Chrome 146 bind authentication sessions to hardware-backed keys using TPM and Secure Enclave modules. Infostealer malware such as LummaC2 is disrupted by preventing reuse of exfiltrated cookies across devices. Session refresh processes require cryptographic proof of device possession before issuing valid authentication tokens.
Smart Slider 3 Pro update system compromise delivered modified plugin versions through official channels for several hours. The injected code establishes PHP backdoors and enables remote command execution within WordPress environments. Additional malware components create hidden administrator accounts and exfiltrate site credentials to external infrastructure.
Storm-2755 conducts phishing campaigns using SEO poisoning and AiTM infrastructure targeting Canadian employees. Stolen session tokens are used to access Microsoft 365 accounts and modify payroll configurations in enterprise systems. Attackers redirect salary payments by altering direct deposit information within compromised accounts.
Adobe Reader zero-day exploitation through malicious PDFs enables system data exfiltration and secondary payload delivery over extended periods. Attackers abuse privileged APIs to access local files and transmit information to external servers. Campaigns observed include targeted lures referencing industrial and geopolitical themes.
APT35 maintains persistent access across Gulf Cooperation Council environments through prior vulnerability exploitation and reconnaissance activity. Infrastructure access overlaps with later regional targeting operations involving multiple IRGC-linked threat clusters. Activity spans energy and aviation sectors with continued pre-positioned footholds.
Highlights of the Day
Hackers Steal $3.6 Million in Bitcoin Depot Breach
Bitcoin Depot disclosed that attackers accessed its IT systems on 23 March 2026 and obtained credentials linked to digital asset settlement accounts. The attacker used these credentials to transfer approximately 50.903 bitcoin, valued at about $3.6 million, from company-controlled wallets without authorisation. The company stated the breach was contained within its corporate environment, with no evidence of impact on customer platforms or exposure of personal data, while the investigation remains ongoing.
Adobe Reader Zero-Day Exploited via Malicious PDFs for Months
Researchers identified a malicious PDF exploiting an unpatched Adobe Reader vulnerability that enables data collection, exfiltration, and potential delivery of remote code execution or sandbox escape payloads. Analysis showed the exploit abuses privileged APIs such as util.readFileIntoStream() to access local files and RSS.addFeed() to transmit system data and retrieve additional code from attacker-controlled servers. Samples linked to the exploit were observed on VirusTotal as early as November 2025, indicating active exploitation for at least four months, with lures referencing Russian oil and gas sector topics.
Russia Charges Journalist Over Alleged Role in Cyberattacks
Russia’s Federal Security Service detained a former Radio Free Europe contributor on treason charges, alleging he shared information with Ukraine that assisted cyberattacks on Russian targets. Authorities said the suspect provided details about a regional publication and a critical infrastructure facility via a Telegram channel linked to Ukraine’s Security Service. Investigators seized computer equipment and communication devices during a search, claiming they contained evidence of activities directed against Russian state security.
Smart Slider 3 Pro Supply Chain Attack Compromises Updates
Nextend’s Smart Slider 3 Pro update infrastructure was breached, distributing a modified version 3.5.1.35 through the official update channel for around six hours. The injected plugin contained a PHP backdoor triggered via HTTP headers, enabling remote command execution through shell functions and eval within WordPress environments. Malware components created hidden administrator accounts, deployed additional backdoors across plugins, themes and core files, and exfiltrated site and credential data to wpjs1.com.
Microsoft Account Suspensions Disrupt Open-Source Security Projects
Microsoft suspended developer accounts used to maintain open-source projects including WireGuard, VeraCrypt, MemTest86, and Windscribe, preventing publication of Windows builds and security updates. Developers reported losing access to Windows driver signing and hardware programme submission systems without prior notification or immediate reinstatement options. Microsoft later stated the suspensions resulted from failure to complete mandatory Windows Hardware Program account verification introduced in October 2025, which triggers automatic blocking after non-compliance.
APT35 Pre-Positioned Access Linked to GCC Strike Targets
APT35, attributed to Iran’s IRGC Intelligence Organization, is reported to maintain pre-positioned access across multiple Gulf Cooperation Council environments, according to CloudSEK analysis. The report links reconnaissance and data exfiltration using vulnerabilities including Telerik CVE-2019-18935 and ConnectWise ScreenConnect to infrastructure later targeted across GCC states and Israel. CloudSEK notes ongoing Iran-Israel escalation context and activity from APT33, CyberAv3ngers, and related IRGC-linked malware operations including BellaCiao, Shamoon 4.0 across energy and aviation sectors.
Claude Code Action Runner MCP Exploit Enables CI/CD Code Execution
A vulnerability in the claude-code-action GitHub Action allows attacker-controlled pull request branches to define malicious MCP server configurations via a .mcp.json file. When a privileged workflow is triggered through events such as issue_comment, the action automatically starts the attacker-defined MCP server and executes commands in the GitHub Actions runner with access to workflow secrets. The issue was patched in version 1.0.78 after being reported to Anthropic in February 2026 and classified as medium severity.
A former Meta employee in London is under criminal investigation for allegedly downloading approximately 30,000 private Facebook images while working at the company. Police state he developed a script designed to bypass Meta’s internal security checks and facilitate unauthorised access to user data. Meta reported that the activity was detected over a year ago, leading to termination of the employee, notification of affected users, and referral of the case to UK law enforcement.
Storm-2755 Uses AiTM Phishing to Divert Payroll Payments
Microsoft tracked Storm-2755 as a financially motivated threat actor conducting payroll diversion attacks against Canadian employees using SEO poisoning and malvertising. The campaign used adversary-in-the-middle phishing to capture session tokens and bypass MFA, enabling access to Microsoft 365 accounts and payroll systems such as Workday. Stolen sessions were used to create inbox rules, suppress HR notifications, and modify direct deposit details, resulting in redirected salary payments.
Google Introduces Device-Bound Sessions to Prevent Cookie Theft
Google has introduced Device Bound Session Credentials (DBSC) in Chrome 146 for Windows, with macOS support planned, to mitigate session theft driven by infostealer malware. The system binds authentication sessions to hardware-backed keys stored in TPM or Secure Enclave, requiring proof of possession to refresh session cookies. This approach prevents reused cookies from granting account access by ensuring stolen session tokens expire without the originating device’s cryptographic key.
Kyverno SSRF Flaw Bypasses Kubernetes Namespace Isolation
A critical SSRF vulnerability in Kyverno 1.16.0 and later allows namespace-scoped users to trigger HTTP requests from the admission controller pod, bypassing Kubernetes RBAC isolation. Attackers can use CEL-based http functions to reach internal services, cross-namespace resources, and cloud metadata endpoints, enabling credential exfiltration and data theft across clusters. Fix merged to the Kyverno main branch disables HTTP functions for namespaced policies, while no patched release is available and no active exploitation observed.
Marimo WebSocket Flaw Enables Pre-Auth Remote Code Execution
Marimo contains a critical pre-authentication remote code execution vulnerability in the /terminal/ws WebSocket endpoint affecting versions prior to 0.23.0. The endpoint fails to enforce authentication while other WebSocket routes remain protected, allowing unauthorised clients to obtain an interactive shell via a PTY session on the server. The issue is confirmed to be exploited in the wild, with observed attack activity occurring shortly after public disclosure and rapid credential theft reported.
Daily Coverage