Home / Jun 30, 2026 / Story
0
#2 BleepingComputer general June 29, 2026 at 14:00 UTC

Critical SimpleHelp flaw exploited to deploy new stealer malware

By Bill Toulas

AI Summary

Threat actors are actively exploiting CVE-2026-48558, a critical authentication bypass flaw in SimpleHelp remote support software, to deploy Djinn Stealer — a previously undocumented cross-platform infostealer targeting Windows, macOS, and Linux systems. Djinn specifically targets cloud and AI credentials, including those linking development and admin environments to broader enterprise infrastructure. Organizations using SimpleHelp should patch immediately, as active exploitation is confirmed and the stealer's cross-platform reach amplifies the blast radius.

Relevance score: 87.0/100

# More from June 30