Threat Research | Weekly Recap [26 Apr 2026]

Threat Research | Weekly Recap [26 Apr 2026]
Cybersecurity Threat Research ‘Weekly’ Recap. The report highlights activity across supply chains, APT intrusions, phishing, ransomware, edge and IoT infrastructure, and AI-enabled exploitation, noting Open VSX sleeper extensions delivering GlassWorm and npm supply-chain worms. The analysis also covers covert C2, credential theft, and domain spoofing in developer ecosystems, with groups such as GopherWhisper, Tropic Trooper, Mustang Panda, UNC6692, and others deploying staged loaders, custom beacons, shadow firmware, and crypto drainers. #GlassWorm #GopherWhisper

Supply Chain & Developer Ecosystems

APT Intrusions & Covert C2

Phishing, Social Engineering & Identity Abuse

Ransomware, Exfiltration & Financial Theft

Edge, IoT & Network Infrastructure

AI, LLMs & Offensive Acceleration

Wi‑Fi, Browser & Endpoint Tradecraft

Vulnerability & Exposure Trends

Threat Research | Weekly Recap – hendryadrian.com