<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[🔒 Security News Digest - 2026-04-22]]></title><description><![CDATA[<p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f512.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--lock" style="height:23px;width:auto;vertical-align:middle" title="🔒" alt="🔒" /> Security News Digest - 2026-04-22</p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f4ca.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--bar_chart" style="height:23px;width:auto;vertical-align:middle" title="📊" alt="📊" /> 23 updates from 7 sources:</p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f539.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--small_blue_diamond" style="height:23px;width:auto;vertical-align:middle" title="🔹" alt="🔹" /> The Hacker News: Microsoft Patches Critical ASP.NET Core CVE-2026-40372 Privilege Escalation Bug<br />   <a href="https://thehackernews.com/2026/04/microsoft-patches-critical-aspnet-core.html" rel="nofollow noopener"><span>https://</span><span>thehackernews.com/2026/04/micr</span><span>osoft-patches-critical-aspnet-core.html</span></a></p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f539.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--small_blue_diamond" style="height:23px;width:auto;vertical-align:middle" title="🔹" alt="🔹" /> Security Boulevard: Sendmarc Review: Features, User Experiences, Pros &amp; Cons (2026)<br />   <a href="https://securityboulevard.com/2026/04/sendmarc-review-features-user-experiences-pros-cons-2026/" rel="nofollow noopener"><span>https://</span><span>securityboulevard.com/2026/04/</span><span>sendmarc-review-features-user-experiences-pros-cons-2026/</span></a></p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f539.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--small_blue_diamond" style="height:23px;width:auto;vertical-align:middle" title="🔹" alt="🔹" /> SecurityWeek: Google Antigravity in Crosshairs of Security Researchers, Cybercriminals<br />   <a href="https://www.securityweek.com/google-antigravity-in-crosshairs-of-security-researchers-cybercriminals/" rel="nofollow noopener"><span>https://www.</span><span>securityweek.com/google-antigr</span><span>avity-in-crosshairs-of-security-researchers-cybercriminals/</span></a></p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f539.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--small_blue_diamond" style="height:23px;width:auto;vertical-align:middle" title="🔹" alt="🔹" /> BleepingComputer: New GoGra malware for Linux uses Microsoft Graph API for comms<br />   <a href="https://www.bleepingcomputer.com/news/security/new-gogra-malware-for-linux-uses-microsoft-graph-api-for-comms/" rel="nofollow noopener"><span>https://www.</span><span>bleepingcomputer.com/news/secu</span><span>rity/new-gogra-malware-for-linux-uses-microsoft-graph-api-for-comms/</span></a></p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f539.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--small_blue_diamond" style="height:23px;width:auto;vertical-align:middle" title="🔹" alt="🔹" /> Unit 42: When Wi-Fi Encryption Fails: Protecting Your Enterprise from AirSnitch Attacks<br />   <a href="https://unit42.paloaltonetworks.com/air-snitch-enterprise-wireless-attacks/" rel="nofollow noopener"><span>https://</span><span>unit42.paloaltonetworks.com/ai</span><span>r-snitch-enterprise-wireless-attacks/</span></a></p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f539.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--small_blue_diamond" style="height:23px;width:auto;vertical-align:middle" title="🔹" alt="🔹" /> BleepingComputer: Microsoft traces Universal Print issues to Graph API code change<br />   <a href="https://www.bleepingcomputer.com/news/microsoft/microsoft-graph-api-code-change-causes-universal-print-share-issues/" rel="nofollow noopener"><span>https://www.</span><span>bleepingcomputer.com/news/micr</span><span>osoft/microsoft-graph-api-code-change-causes-universal-print-share-issues/</span></a></p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f539.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--small_blue_diamond" style="height:23px;width:auto;vertical-align:middle" title="🔹" alt="🔹" /> The Hacker News: Toxic Combinations: When Cross-App Permissions Stack into Risk<br />   <a href="https://thehackernews.com/2026/04/toxic-combinations-when-cross-app.html" rel="nofollow noopener"><span>https://</span><span>thehackernews.com/2026/04/toxi</span><span>c-combinations-when-cross-app.html</span></a></p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f539.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--small_blue_diamond" style="height:23px;width:auto;vertical-align:middle" title="🔹" alt="🔹" /> SecurityWeek: North Korean Hackers Use AppleScript, ClickFix in Fresh macOS Attacks<br />   <a href="https://www.securityweek.com/north-korean-hackers-use-applescript-clickfix-in-fresh-macos-attacks/" rel="nofollow noopener"><span>https://www.</span><span>securityweek.com/north-korean-</span><span>hackers-use-applescript-clickfix-in-fresh-macos-attacks/</span></a></p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f539.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--small_blue_diamond" style="height:23px;width:auto;vertical-align:middle" title="🔹" alt="🔹" /> The Hacker News: Lotus Wiper Malware Targets Venezuelan Energy Systems in Destructive Attack<br />   <a href="https://thehackernews.com/2026/04/lotus-wiper-malware-targets-venezuelan.html" rel="nofollow noopener"><span>https://</span><span>thehackernews.com/2026/04/lotu</span><span>s-wiper-malware-targets-venezuelan.html</span></a></p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f539.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--small_blue_diamond" style="height:23px;width:auto;vertical-align:middle" title="🔹" alt="🔹" /> SecurityWeek: Claude Mythos Finds 271 Firefox Vulnerabilities<br />   <a href="https://www.securityweek.com/claude-mythos-finds-271-firefox-vulnerabilities/" rel="nofollow noopener"><span>https://www.</span><span>securityweek.com/claude-mythos</span><span>-finds-271-firefox-vulnerabilities/</span></a></p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f539.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--small_blue_diamond" style="height:23px;width:auto;vertical-align:middle" title="🔹" alt="🔹" /> SecurityWeek: Are SBOMs Failing? Supply Chain Attacks Rise as Security Teams Struggle With SBOM Data<br />   <a href="https://www.securityweek.com/are-sboms-failing-supply-chain-attacks-rise-as-security-teams-struggle-with-sbom-data/" rel="nofollow noopener"><span>https://www.</span><span>securityweek.com/are-sboms-fai</span><span>ling-supply-chain-attacks-rise-as-security-teams-struggle-with-sbom-data/</span></a></p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f539.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--small_blue_diamond" style="height:23px;width:auto;vertical-align:middle" title="🔹" alt="🔹" /> SecurityWeek: Mirai Botnet Targets Flaw in Discontinued D-Link Routers<br />   <a href="https://www.securityweek.com/mirai-botnet-targets-flaw-in-discontinued-d-link-routers/" rel="nofollow noopener"><span>https://www.</span><span>securityweek.com/mirai-botnet-</span><span>targets-flaw-in-discontinued-d-link-routers/</span></a></p><p>🦠 Malwarebytes: Researcher claims Claude Desktop installs “spyware” on macOS<br />   <a href="https://www.malwarebytes.com/blog/news/2026/04/researcher-claims-claude-desktop-installs-spyware-on-macos" rel="nofollow noopener"><span>https://www.</span><span>malwarebytes.com/blog/news/202</span><span>6/04/researcher-claims-claude-desktop-installs-spyware-on-macos</span></a></p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f539.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--small_blue_diamond" style="height:23px;width:auto;vertical-align:middle" title="🔹" alt="🔹" /> SecurityWeek: New Wiper Malware Targeted Venezuelan Energy Sector Prior to US Intervention<br />   <a href="https://www.securityweek.com/new-wiper-malware-targeted-venezuelan-energy-sector-prior-to-us-intervention/" rel="nofollow noopener"><span>https://www.</span><span>securityweek.com/new-wiper-mal</span><span>ware-targeted-venezuelan-energy-sector-prior-to-us-intervention/</span></a></p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f539.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--small_blue_diamond" style="height:23px;width:auto;vertical-align:middle" title="🔹" alt="🔹" /> Security Boulevard: Unauthorized Users Reportedly Gain Access to Anthropic’s Mythos AI Model<br />   <a href="https://securityboulevard.com/2026/04/unauthorized-users-reportedly-gain-access-to-anthropics-mythos-ai-model/" rel="nofollow noopener"><span>https://</span><span>securityboulevard.com/2026/04/</span><span>unauthorized-users-reportedly-gain-access-to-anthropics-mythos-ai-model/</span></a></p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f539.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--small_blue_diamond" style="height:23px;width:auto;vertical-align:middle" title="🔹" alt="🔹" /> BleepingComputer: Microsoft Teams to get efficiency mode on PCs with limited resources<br />   <a href="https://www.bleepingcomputer.com/news/microsoft/microsoft-teams-gets-efficiency-mode-for-hardware-constrained-devices/" rel="nofollow noopener"><span>https://www.</span><span>bleepingcomputer.com/news/micr</span><span>osoft/microsoft-teams-gets-efficiency-mode-for-hardware-constrained-devices/</span></a></p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f539.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--small_blue_diamond" style="height:23px;width:auto;vertical-align:middle" title="🔹" alt="🔹" /> The Record from Recorded Future News: New Defense Department cyber strategy imminent, official says<br />   <a href="https://therecord.media/defense-cyber-strategy-warfare" rel="nofollow noopener"><span>https://</span><span>therecord.media/defense-cyber-</span><span>strategy-warfare</span></a></p><p>🦠 Malwarebytes: Malicious trading website drops malware that hands your browser to attackers<br />   <a href="https://www.malwarebytes.com/blog/threat-intel/2026/04/malicious-trading-website-drop-malware-that-hands-over-your-browser-to-attackers" rel="nofollow noopener"><span>https://www.</span><span>malwarebytes.com/blog/threat-i</span><span>ntel/2026/04/malicious-trading-website-drop-malware-that-hands-over-your-browser-to-attackers</span></a></p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f539.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--small_blue_diamond" style="height:23px;width:auto;vertical-align:middle" title="🔹" alt="🔹" /> The Record from Recorded Future News: UK cyber agency handling four major incidents a week as nation-state attacks surge<br />   <a href="https://therecord.media/UK-cyberattacks-ncsc-china" rel="nofollow noopener"><span>https://</span><span>therecord.media/UK-cyberattack</span><span>s-ncsc-china</span></a></p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f539.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--small_blue_diamond" style="height:23px;width:auto;vertical-align:middle" title="🔹" alt="🔹" /> SecurityWeek: Most Serious Cyberattacks Against the UK Now From Russia, Iran and China, Cyber Chief Says<br />   <a href="https://www.securityweek.com/most-serious-cyberattacks-against-the-uk-now-from-russia-iran-and-china-cyber-chief-says/" rel="nofollow noopener"><span>https://www.</span><span>securityweek.com/most-serious-</span><span>cyberattacks-against-the-uk-now-from-russia-iran-and-china-cyber-chief-says/</span></a></p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f539.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--small_blue_diamond" style="height:23px;width:auto;vertical-align:middle" title="🔹" alt="🔹" /> BleepingComputer: New npm supply-chain attack self-spreads to steal auth tokens<br />   <a href="https://www.bleepingcomputer.com/news/security/new-npm-supply-chain-attack-self-spreads-to-steal-auth-tokens/" rel="nofollow noopener"><span>https://www.</span><span>bleepingcomputer.com/news/secu</span><span>rity/new-npm-supply-chain-attack-self-spreads-to-steal-auth-tokens/</span></a></p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f539.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--small_blue_diamond" style="height:23px;width:auto;vertical-align:middle" title="🔹" alt="🔹" /> Security Boulevard: The Time Is Now to Prepare for CRA Enforcement<br />   <a href="https://securityboulevard.com/2026/04/the-time-is-now-to-prepare-for-cra-enforcement/" rel="nofollow noopener"><span>https://</span><span>securityboulevard.com/2026/04/</span><span>the-time-is-now-to-prepare-for-cra-enforcement/</span></a></p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f539.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--small_blue_diamond" style="height:23px;width:auto;vertical-align:middle" title="🔹" alt="🔹" /> The Record from Recorded Future News: China’s cyber capabilities now equal to the US, warns Dutch intelligence<br />   <a href="https://therecord.media/china-cyber-capabilities-match-us-dutch-intel-says" rel="nofollow noopener"><span>https://</span><span>therecord.media/china-cyber-ca</span><span>pabilities-match-us-dutch-intel-says</span></a></p><p><a href="https://infosec.exchange/tags/InfoSec" rel="tag">#<span>InfoSec</span></a> <a href="https://infosec.exchange/tags/SecurityNews" rel="tag">#<span>SecurityNews</span></a></p>]]></description><link>https://board.circlewithadot.net/topic/3e68b576-ce75-4dc0-9382-5c2eaed3b796/security-news-digest-2026-04-22</link><generator>RSS for Node</generator><lastBuildDate>Fri, 15 May 2026 03:39:27 GMT</lastBuildDate><atom:link href="https://board.circlewithadot.net/topic/3e68b576-ce75-4dc0-9382-5c2eaed3b796.rss" rel="self" type="application/rss+xml"/><pubDate>Wed, 22 Apr 2026 13:56:22 GMT</pubDate><ttl>60</ttl></channel></rss>