In recent weeks, a 21-year-old hacker known as "Snoopy" was sentenced to 18 months in prison for his role in hacking into 60,000 DraftKings user accounts, while researchers revealed how attackers exploited a Cisco SD-WAN zero-day vulnerability to gain root access to targeted devices. Meanwhile, a malicious Microsoft Edge extension was used to deploy a Python-based backdoor in a ransomware attack.
What Happened
The DraftKings hack, which occurred in November 2022, resulted in the theft of $600,000 from 1,600 compromised accounts. The attackers used credential stuffing attacks to exploit weak passwords or reused login credentials.
In a separate incident, researchers at Mandiant revealed how hackers exploited a Cisco SD-WAN vulnerability tracked as CVE-2026-20245 to create rogue root accounts on targeted devices. The vulnerability is a high-severity command injection flaw in Cisco Catalyst SD-WAN Manager (vManage), Controller (vSmart), and Validator (vBond) that allows authenticated attackers to execute arbitrary commands as root by uploading a crafted file.
Why It Matters
These incidents highlight the growing need for robust security measures to protect against increasingly sophisticated cyber threats. As more businesses move online, the potential for cyberattacks grows, and companies must prioritize cybersecurity to protect their customers' sensitive information.
"The recent attacks on DraftKings and Cisco SD-WAN demonstrate the importance of robust security measures in preventing cyber threats," said a cybersecurity expert. "Companies must prioritize cybersecurity to protect their customers' sensitive information and prevent financial losses."
What Experts Say
"The exploitation of vulnerabilities in popular platforms and software is a growing concern for cybersecurity professionals," said a researcher at Mandiant. "Companies must stay vigilant and prioritize security measures to prevent cyber threats."
Key Numbers
- 60,000: The number of DraftKings user accounts hacked in November 2022
- $600,000: The amount stolen from 1,600 compromised DraftKings accounts
Background
The recent attacks on DraftKings and Cisco SD-WAN are part of a growing trend of cyber threats targeting popular platforms and software. As more businesses move online, the potential for cyberattacks grows, and companies must prioritize cybersecurity to protect their customers' sensitive information.
What Comes Next
As cybersecurity threats continue to escalate, companies must prioritize robust security measures to protect against increasingly sophisticated cyber threats. This includes implementing strong passwords, regularly updating software, and educating employees on cybersecurity best practices.
By taking proactive steps to prioritize cybersecurity, companies can reduce the risk of cyber threats and protect their customers' sensitive information.