Skip to content

Attackers Weaponize CVE-2026-39987 to Spread Blockchain

Cybersecuritynews •Tushar Subhra Dutta • April 17, 2026

A critical vulnerability in the marimo Python notebook platform is now being actively used by attackers to deploy a blockchain-powered backdoor on developer systems. The flaw, tracked as CVE-2026-39987, allows remote code execution without authentication, making it a dangerous entry point for threat actors leveraging it to install a new variant of the NKAbuse malware […]

Extracted Entities