The HashWhales Dispatch

Software, security, and cloud news — summarized in plain language, with sources.

East Asian Hackers Use Telegram for C2; LG Cracks Down on Proxy Apps

Two cybersecurity developments this week expose hidden risks in enterprise and consumer technology: state-linked espionage via messaging platforms and smart TVs quietly routing third-party traffic.

Browser-Built Malware and Smart TV Proxies Highlight New Attack Surfaces

A fragmented malvertising campaign forces victims' browsers to assemble malware while LG moves to purge residential proxy apps from its smart TV platform.

Active RCE Exploits Hit Fastjson; LG Moves to Purge Proxy Apps from Smart TVs

Two separate security developments this week expose hidden risks in widely deployed software and consumer hardware.

GitLab RCE Exploit Published; LG Cracks Down on Smart TV Proxy Apps

A low-privilege GitLab attack chain is now public, while LG moves to purge residential proxy software from its smart TV platform.

BGP Manipulation Affects 70% of Routes; AWS Connect Gains VDI Audio Fix

Cloudflare research exposes widespread BGP ORIGIN rewriting while AWS quietly solves a persistent audio headache for cloud desktop contact centers.

BGP ORIGIN Rewrites Affect 70% of Paths; Lambda Gets Scaling Logs

Cloudflare's research exposes widespread BGP manipulation by transit providers, while AWS adds CloudWatch visibility into Lambda's managed compute scaling.

North Korean Hackers Profile Crypto Wallets via Fake Zoom; LG Bans TV Proxy Apps

Two separate threat vectors emerged this week: a North Korean phishing operation targeting crypto holders through spoofed video-call platforms, and a widespread residential proxy scheme hiding inside LG smart TV apps.

Vercel Adds WAF for Blob Storage; GitHub's Dependabot Gets 3-Day Cooldown

Two platform updates aim to harden supply-chain and storage security for development teams.

AWS Opens AI Agent Benchmark; Cloudflare Fixes Cache Header Overrides

Two infrastructure releases this week target reproducibility gaps in AI agent testing and long-standing cache pollution problems at the edge.

Active Directory Exploit and Smart TV Proxy Abuse Raise Enterprise Security Flags

A new certificate-based AD attack grants domain-level access to low-privileged users, while LG moves to purge proxy-abusing apps from its smart TV platform.

NodeBB Forum Flaws Patched; LG Moves to Block Smart TV Proxy Abuse

Two security disclosures this week expose risks hiding in everyday software—forum platforms and living-room televisions alike.

AWS ECS Gets Zone-Aware Routing; Cloudflare Rewrites Cache Header Logic

Two networking updates this week give infrastructure teams sharper control over traffic routing and cache behavior without touching origin servers.

Signal, not noise

Technology news translated into business decisions

The HashWhales Dispatch follows cybersecurity incidents, software releases, artificial intelligence, cloud infrastructure, and the policy changes that affect modern organizations. Each brief links to its original sources and explains why the development matters, without turning a press release into a prediction. The goal is to help owners and technical leaders decide what deserves attention now, what can wait, and what should change in their systems.

For deeper implementation guidance, visit our engineering insights. If a story raises a question about your own website, network, backups, or security posture, request a free technology risk review for a practical, company-specific next step.

Free AuditChat on WhatsApp