Week in Cybersecurity: Chrome 0-Days, Router Botnets, AWS Breach & Rogue AI

1 min read
Source: The Hacker News
Week in Cybersecurity: Chrome 0-Days, Router Botnets, AWS Breach & Rogue AI
Photo: The Hacker News
TL;DR Summary

This weekly security digest highlights Google Chrome’s two actively exploited 0-days (CVE-2026-3909/3910) patched by Google, plus widespread router botnets like SocksEscort and KadNap leveraging firmware abuse; it also details UNC6426’s AWS breach via an nx npm supply-chain compromise and GitHub‑to‑AWS trust abuse. The roundup covers new threats such as the Roundish Roundcube toolkit, AI-agent collaboration risks, phishing targeting AWS credentials, a AppsFlyer SDK supply-chain incident, and ransomware like GIBCRYPTO, along with notable security news (Meta ending Instagram E2EE) and new defense tools like Dev Machine Guard and Trajan.

Share this article

Reading Insights

Total Reads

1

Unique Readers

2

Time Saved

18 min

vs 19 min read

Condensed

98%

3,76488 words

Want the full story? Read the original article

Read on The Hacker News