Cybersecurity News | Daily Recap [13 Jun 2026]

Cybersecurity News | Daily Recap [13 Jun 2026]
Daily Recap, U.S. export controls compelled Anthropic to take Fable 5 and Mythos 5 offline for foreign nationals, underscoring tighter access to advanced AI models. Elsewhere, Chinese-linked actors showed long-running stealth in an authentication hijack and Linux backdoor campaigns, while Arch Linux AUR package hijacking pushed an infostealer and eBPF rootkit. #Anthropic #Fable5 #Mythos5 #Fable5 #Mythos5 #AuthHijack #LinuxBackdoor #ArchLinuxAUR #eBPF #Conti #ShinyHunters #OraclePeopleSoft #Coupang #23andMe #phpBB #FISA #DeepfakePornSite

AI Export Controls

  • U.S. export restrictions forced Anthropic to take Fable 5 and Mythos 5 offline for foreign nationals, highlighting tightening controls on advanced AI access – Fable 5, Mythos 5, AI Ban

China-Linked Threats

  • Chinese hackers hijacked an authentication flow to spy on an isolated network for nearly a decade, showing long-term stealth and persistence – Auth Hijack
  • A China-based cybercrime network was dismantled by the FBI after causing about $1.9B in losses, while Google separately sued a Chinese smishing group accused of abusing Gemini AI for phishing – FBI Takedown, Gemini Smishing
  • China-linked attackers backdoored Linux login software to remain hidden for nearly a decade, underscoring the durability of long-running supply-chain compromise – Linux Backdoor

Linux Supply Chain

  • More than 400 Arch Linux AUR packages were hijacked to deploy an infostealer and eBPF rootkit, with a related wave also pushing a Rust credential stealer – AUR Hijack, AUR Malware, Rust Stealer

Ransomware & Extortion

  • A Ukrainian national pleaded guilty for involvement in the Conti ransomware operation and faces up to 20 years in prison – Conti Guilty, Conti Plea
  • ShinyHunters is actively extorting universities after exploiting an unpatched Oracle PeopleSoft flaw, extending its campaign against higher education – Oracle Extortion

Data Breaches & Fines

  • South Korea fined Coupang a record $409 million over a data breach, reinforcing the growing cost of large-scale privacy failures – Coupang Fine, More
  • The bankruptcy administrator approved a $47 million settlement fund for 23andMe data breach victims, moving compensation forward for affected users – 23andMe Fund
  • Maine disabled its data breach notification portal after fake disclosures, disrupting the state’s incident-reporting process – Maine Portal

Web & App Security

  • phpBB fixed an authentication bypass bug that had lurked for about a decade, closing a long-standing forum security gap – phpBB Fix

Law Enforcement & Surveillance

  • A major U.S. surveillance program is poised to lapse after legislative deadlock, raising uncertainty around continued FISA authorities – Surveillance Lapse
  • U.S., French, and Italian authorities shut down a massive deepfake porn site in a coordinated cross-border takedown – Deepfake Takedown

Cybersecurity News | Daily Recap – hendryadrian.com