CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

Risky Bulletin: FSB calls out Western spyware operation

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 6524

As cited

Copy frozen at (site build).

Risky Bulletin: FSB calls out Western spyware operation

No summary had been written when this copy was frozen.

First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

threat intel

Risky Bulletin: FSB calls out Western spyware operation

Russia's Federal Security Service (FSB) publicly disclosed a Western spyware operation. High-profile Instagram accounts were compromised through vulnerability in Meta's artificial intelligence (AI) support agents. Red Hat npm packages suffered compromise in a supply chain attack, and approximately ten percent of domains registered in the prior year were identified as malicious.

Why it matters: Organizations using Meta's AI support agents face account takeover risk; developers consuming Red Hat npm packages need to audit for compromised dependencies; security teams should increase scrutiny of newly registered domains given the malicious registration rate.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

threat intel

Risky Bulletin: FSB calls out Western spyware operation

Russia's Federal Security Service (FSB) publicly disclosed a Western spyware operation. High-profile Instagram accounts were compromised through vulnerability in Meta's artificial intelligence (AI) support agents. Red Hat npm packages suffered compromise in a supply chain attack, and approximately ten percent of domains registered in the prior year were identified as malicious.

Why it matters: Organizations using Meta's AI support agents face account takeover risk; developers consuming Red Hat npm packages need to audit for compromised dependencies; security teams should increase scrutiny of newly registered domains given the malicious registration rate.

VendorsLinux
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary