Security News Update for April 19, 2026
This week’s news includes:
- Backdoor Found in Dozens of WordPress Plugins Used by Thousands
- Disgruntled hacker drops second Zero-Day for Windows Defender hours after Microsoft patches the first one
- OMB Readies Anthropic Mythos for Agencies Over DoD “Supply Chain Risk” Ban
- We can break cryptocurrency now
- Microsoft’s Terms of Service Say CoPilot is for “Entertainment purposes only”
- The State of AI Adoption
- AI: Where Regulation Meets Productivity
- Federal Agencies Ignore Pete’s Private War on Anthropic
- Claude Code, Gemini CLI, GitHub Copilot Vulnerable to Prompt Injection Attack Through Comments
- Senior Finance Heads Warn AI Could Destabilize the Global Banking System
- What is the assessment “false Start” rate that assessors are seeing?
- How far out do we need to schedule our third party CMMC assessment?
- Could a CDO enclave be an interim step so that you do not get frozen out of bids
- NIST Has a Great Solution to the Massive Number of Vulnerabilities-Stop Recording Them
- OpenAI “widens access” to its competitor to Claude Mythos
- Patch Tuesday – 167 Windows Bugs, Sharepoint Zero-Day, Defender Weakness, Chrome Zero-Day and More
- Operation PowerOFF identifies 75,000 DDoS users, takes down 53 domains
- House and Senate Pass 10 Day Extension of Spying Law
- Netgear is the First to Get Approval to Continue to Import Routers – at Least for a While
- GSA Releases Draft AI Rules Including Use-Rights in Order to Sell to the Gov
- Maine is Set to Be First State to Ban Data Centers Over Water, Power issues
- Air Force Cyber Resilience Office for Control Systems is Now Operational
- Fake Software Exists Even on Apple Store
- Send in the Guard – as in National Guard
- Fiverr Users’ Tax, License and Private Documents Exposed, Indexed by Google
- Poisoned open source and the future of supply chain attacks
- Claude Mythos is not the end of civilization, but don’t get too comfortable
- CISA admits that firing lots of people degrades their ability to do their job
- Security News for the week ending April 17, 2026: Claude Mythos could be a software vendor’s worst nightmare, China completes testing of undersea sabotage tool, Russia launched (a formerly) covert operation to deploy undersea sabotage vessels in UK waters, AI delivers productivity gains – for crooks and EU regulators largely denied access to Anthropic Mythos
