← Carolina Clear Tech

Cyber Threat Brief

2026-03-15

Listen to this brief (12:35)

Download MP3
Show Notes

Show Notes - 2026-03-15

Stories Covered

CVEs Referenced

CVE-2026-25172, CVE-2026-25173, CVE-2026-26111

Read the full brief

Get tomorrow's brief in your inbox

Protect Your Business

Need a security assessment? See our cybersecurity packages.

View Services

Daily Cybersecurity Brief - 2026-03-15

Today: Microsoft released an out-of-band hotpatch fixing three RCE vulnerabilities in Windows 11 RRAS management tools. GlassWorm supply-chain campaign expanded to 72 malicious VS Code extensions targeting developer tools. AppsFlyer Web SDK was hijacked for 48 hours to deploy crypto-stealing JavaScript across thousands of websites.

Critical Alerts

Microsoft Windows 11 RRAS Remote Code Execution (CVE-2026-26111, CVE-2026-25173, CVE-2026-25172)

Microsoft released out-of-band hotpatch KB5084597 to fix three remote code execution vulnerabilities in Windows Routing and Remote Access Service (RRAS) management tool. The flaws allow an authenticated domain attacker to trick users into connecting to a malicious server via the RRAS Snap-in, achieving RCE. The vulnerabilities were already patched in March 2026 Patch Tuesday, but this OOB hotpatch applies in-memory fixes without requiring reboot for mission-critical systems. EPSS scores are low (0.001, 20-25th percentile) but the RCE severity and domain-joined targeting make this high priority for Enterprise environments.

Critical HPE AOS-CX Authentication Bypass

HPE disclosed a critical vulnerability in AOS-CX network switches allowing unauthenticated remote attackers to reset administrator passwords and bypass authentication controls. No CVE or patch details are available yet, but the remote unauthenticated nature makes this extremely high severity for organizations running HPE switching infrastructure.

Business & Infrastructure Threats

AppsFlyer Web SDK Supply-Chain Attack (March 9-11)

The AppsFlyer Web SDK, used by 15,000 businesses across 100,000+ mobile and web applications, was compromised with crypto-stealing JavaScript between March 9 and March 11, 2026. The malicious code was served from AppsFlyer's official domain (websdk.appsflyer.com), preserving normal SDK functionality while monitoring cryptocurrency wallet inputs and swapping addresses to attacker-controlled wallets. Targeted currencies include Bitcoin, Ethereum, Solana, Ripple, and TRON. AppsFlyer confirmed this was a domain registrar incident and stated the mobile SDK was unaffected. The exposure window was approximately 48 hours (March 9 22:45 UTC to March 11).

GlassWorm Supply-Chain Campaign Targets Developers (72+ Malicious VS Code Extensions)

The GlassWorm malware campaign expanded significantly with 72 additional malicious extensions uploaded to Open VSX registry since January 31, 2026. These extensions mimic widely used developer tools (linters, formatters, AI coding assistants like Claude Code and Google Antigravity) and use a new propagation technique, abusing extensionPack and extensionDependencies to turn initially benign-looking extensions into malware delivery vehicles after updates. Extensions appear harmless at publication but are later updated to pull GlassWorm-linked packages as dependencies. The campaign continues to use invisible Unicode characters to hide malicious code, Solana blockchain dead drops for C2 resolution, and avoids Russian-locale systems. A parallel campaign injected 151 GitHub repositories with the same Unicode technique between March 3-9, 2026, plus two npm packages (@aifabrix/miso-client, @iflow-mcp/watercrawl-watercrawl-mcp).

OpenClaw AI Agent Security Risks (Prompt Injection, Data Exfiltration)

China's CNCERT issued a security warning about OpenClaw (formerly Clawdbot), an open-source autonomous AI agent, citing weak default security configurations and prompt injection vulnerabilities. Researchers demonstrated that link preview features in Telegram and Discord can be weaponized for immediate data exfiltration without user clicks. The attack works by manipulating the AI agent into generating attacker-controlled URLs with sensitive data in query parameters, which are automatically transmitted when messaging apps render link previews. Additional risks include accidental data deletion from misinterpreted instructions, malicious skills uploaded to ClawHub repositories that execute arbitrary commands, and recently disclosed vulnerabilities enabling system compromise. Chinese authorities have restricted state enterprises and government agencies from running OpenClaw on office computers.

General Security News

Loblaw Data Breach Exposes Customer Information

Canadian retailer Loblaw confirmed a data breach exposing customer personal information including names, email addresses, and phone numbers. No additional details on breach scope, timeline, or attack vector were provided in the initial disclosure.

Patch Priority

Vulnerability Disclosures

Microsoft Windows 11 RRAS Remote Code Execution

CVE-2026-26111, CVE-2026-25173, and CVE-2026-25172 allow authenticated domain attackers to achieve remote code execution by tricking users into connecting to malicious servers via the Windows Routing and Remote Access Service (RRAS) Snap-in. All three vulnerabilities affect Windows 11 versions 25H2, 24H2, and Enterprise LTSC 2024. EPSS scores are low (0.001, 20-25th percentile) indicating low likelihood of exploitation in the wild currently, but the domain-joined attack scenario and RCE impact warrant immediate patching for Enterprise environments. Microsoft initially patched these on March 10 Patch Tuesday but re-released KB5084597 as an OOB hotpatch to ensure comprehensive coverage across all affected scenarios without requiring system restarts for mission-critical devices.

HPE AOS-CX Unauthenticated Admin Password Reset

HPE disclosed a critical severity vulnerability in AOS-CX network switch firmware that allows remote unauthenticated attackers to reset administrator passwords and circumvent authentication controls. No CVE has been assigned and no patch is available yet. Given the critical rating and unauthenticated remote attack vector, organizations running HPE switching infrastructure should treat this as a high-priority watch item and implement compensating controls (network isolation, ACLs on management interfaces) until a patch is released.

Trends & Context

Supply-chain attacks continue to escalate across multiple platforms. The AppsFlyer SDK compromise demonstrates how trusted third-party components can become high-impact distribution channels for malware, affecting thousands of downstream applications. GlassWorm's evolution to abuse extension dependency relationships shows attackers adapting to marketplace review processes by uploading benign packages and weaponizing them post-approval. AI agent security is emerging as a new attack surface, with prompt injection and link preview-based data exfiltration representing novel threat vectors that bypass traditional security controls. Organizations should prioritize software composition analysis, dependency auditing, and AI system isolation as core security practices.