📰 DAILY THREAT BRIEFING
Sunday, March 29, 2026
12 News Items
THN · BleepingComputer · Krebs · Dark Reading · SANS

📰 Cybersecurity News Headlines

Top stories from leading cybersecurity publications as of March 29, 2026.

  1. Iran-Linked Hackers Breach FBI Director’s Personal Email, Hit Stryker With Wiper Attack
    — The Hacker News

    Threat actors with ties to Iran successfully broke into the personal email account of Kash Patel, the director of the U.S. Federal Bureau of…
  2. TeamPCP Supply Chain Campaign: Update 003 – Operational Tempo Shift as Campaign Enters Monetization Phase With No New Compromises in 48 Hours, (Sat, Mar 28th)
    — SANS ISC

    This is the third update to the TeamPCP supply chain campaign threat intelligence report, "When the Security Scanner Became the Weapon" (v3.…
  3. New Infinity Stealer malware grabs macOS data via ClickFix lures
    — Bleeping Computer

    A new info-stealing malware named Infinity Stealer is targeting macOS systems with a Python payload packaged as an executable using the open…
  4. Citrix NetScaler Under Active Recon for CVE-2026-3055 (CVSS 9.3) Memory Overread Bug
    — The Hacker News

    A recently disclosed critical security flaw impacting Citrix NetScaler ADC and NetScaler Gateway is witnessing active reconnaissance activit…
  5. CISA Adds CVE-2025-53521 to KEV After Active F5 BIG-IP APM Exploitation
    — The Hacker News

    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added a critical security flaw impacting F5 BIG-IP Access Policy …
  6. TA446 Deploys DarkSword iOS Exploit Kit in Targeted Spear-Phishing Campaign
    — The Hacker News

    Proofpoint has disclosed details of a targeted email campaign in which threat actors with ties to Russia are leveraging the recently disclos…
  7. Backdoored Telnyx PyPI package pushes malware hidden in WAV audio
    — Bleeping Computer

    TeamPCP hackers compromised the Telnyx package on the Python Package Index today, uploading malicious versions that deliver credential-steal…
  8. Fake VS Code alerts on GitHub spread malware to developers
    — Bleeping Computer

    A large-scale campaign is targeting developers on GitHub with fake Visual Studio Code (VS Code) security alerts posted in the Discussions se…
  9. China Upgrades the Backdoor It Uses to Spy on Telcos Globally
    — Dark Reading

    Chinese APT Red Menshen's super-advanced BPFdoor malware defeats traditional cybersecurity protections. All telcos can do, really, is try hu…
  10. Wartime Usage of Compromised IP Cameras Highlight Their Danger
    — Dark Reading

    The list of countries exploiting Internet-connected cameras to give them eyes inside their adversaries' borders continues to expand. What sh…
  11. TeamPCP Supply Chain Campaign: Update 002 – Telnyx PyPI Compromise, Vect Ransomware Mass Affiliate Program, and First Named Victim Claim, (Fri, Mar 27th)
    — SANS ISC

    This is the second update to the TeamPCP supply chain campaign threat intelligence report, "When the Security Scanner Became the Weapon" (v3…
  12. Agentic GRC: Teams Get the Tech. The Mindset Shift Is What's Missing.
    — Bleeping Computer

    Agentic GRC automates workflows, forcing teams to rethink their role beyond operations. Anecdotes explains why the biggest challenge is shif…

Generated by HiveNet.ai Threat Intelligence Platform · March 29, 2026 · Sources: The Hacker News, Bleeping Computer, Krebs on Security, Dark Reading, SANS ISC