LodeHQSubscribe →

Russian fake-text hijacks, NIST CVSS cuts

Infosec · 2026-06-28

Vulnerabilities & Exploits
NIST cutback leaves thousands of CVEs without CVSS, shaking risk scoring10 MIN

NIST’s new enrichment policy leaves 5,000+ CVEs without CVSS scores, forcing teams to rely on inconsistent vendor data. In the first two months only 20% of published CVEs received NIST CVSS vectors, and more than a thousand selected for enrichment remain unanalyzed. This coverage gap threatens automated triage and risk scoring across the industry.

Mitsubishi Wi‑Fi Adapter CVE‑2026‑5667 Lets Nearby Attackers Hijack Devices1 MIN

A new CVE reveals that Mitsubishi MAC-577IF-2E Wi-Fi adapters expose a hard-coded SSID and password. Anyone within radio range can connect unauthenticated, read sensor data, change settings, or trigger a denial-of-service attack. The flaw affects multiple Mitsubishi appliances, from air conditioners to smart switches.

Threats & Malware
Operation Eastwood Takes Down 100+ Servers of Pro‑Russian DDoS Group NoName057(16)2 MIN

Europol‑coordinated Operation Eastwood dismantled more than 100 servers used by the pro‑Russian hacktivist collective NoName057(16) and issued seven arrest warrants, arresting two members in France and Spain. The crackdown also warned over a thousand supporters of legal liability, aiming to cripple the group’s DDoS‑as‑a‑service engine.

Russian intel used fake support texts to hijack Ukrainian officials’ messaging apps1 MIN

Ukraine’s security service and the FBI uncovered a Russian‑run phishing campaign that masquerades as messaging‑app support bots to steal login credentials from officials, military personnel and activists. The operation targets apps like Signal and WhatsApp, exposing sensitive military, political and economic data and highlighting the growing focus on credential‑theft via SMS spoofing.

Russian intel used fake support texts to hijack Ukrainian officials’ messaging apps1 MIN

Ukraine’s security service and the FBI uncovered a Russian‑run phishing campaign that masquerades as messaging‑app support bots to steal login credentials from officials, military personnel and activists. The operation targets apps like Signal and WhatsApp, exposing sensitive military, political and economic data and highlighting the growing focus on credential‑theft via SMS spoofing.

Remus Stealer: 64‑bit Lumma Successor Using EtherHiding C222 MIN

Gen Threat Labs uncovered Remus, a 64‑bit infostealer that directly evolves from the Lumma codebase. It swaps Lumma’s Steam/Telegram dead‑drop resolvers for EtherHiding and adds a new Application‑Bound Encryption bypass, boosting evasion against sandboxes. The shift to 64‑bit expands its target surface and signals a new wave of sophisticated MaaS threats.

Privacy, Policy & Governance
Bipartisan Kids Safety Package Moves KOSA Toward House Vote Next Week1 MIN

Committee leaders Brett Guthrie and Frank Pallone announced a bipartisan KIDS Act package that bundles the Kids Online Safety Act with 18 other measures. The deal clears the path for a House floor vote on KOSA next Monday, raising privacy and speech concerns over its age‑verification mandates.

Research & Tools
Codex Powers Time‑Travel Debugging to Accelerate Malware Analysis8 MIN

SpecterOps used OpenAI Codex with TTDObjectsPy to feed real execution traces into a language model, letting it query Time Travel Debugging data instead of relying on static decompilation. The approach slashes false‑positive hypotheses and speeds up malware analysis, demonstrated on the FLARE‑ON 12 challenge. It shows LLMs can augment, not replace, dynamic reverse‑engineering tools.

Get Infosec in your inbox, every issue.
Subscribe free
Privacy · Terms · About · Contact
© 2026 LodeHQ