News
Official Check Marx Jenkins package compromised with infostealer
12+ hour, 53+ min ago (692+ words) Canvas login portals hacked in mass Shiny Hunters extortion campaign Ivanti warns of new EPMM flaw exploited in zero-day attacks Instructure reaches 'agreement' with Shiny Hunters to stop data leak GM agrees to $12. 75 M California settlement over sale of drivers…...
Why More Analysts Won't Solve Your SOC's Alert Problem
3+ day, 20+ hour ago (1741+ words) Canvas login portals hacked in mass Shiny Hunters extortion campaign Ivanti warns of new EPMM flaw exploited in zero-day attacks Student hacked Taiwan high-speed rail to trigger emergency brakes New Cisco Do S flaw requires manual reboot to revive devices…...
Critical vm2 sandbox bug lets attackers execute code on hosts
5+ day, 16+ hour ago (559+ words) Microsoft confirms April Windows updates cause backup failures Critical vm2 sandbox bug lets attackers execute code on hosts Start ethical hacking with 9 multi-lesson courses for just $30 DAEMON Tools devs confirm breach, release malware-free version A critical vulnerability in the popular Node....
The EOL Blind Spot in Your CVE Feed: What SCA Tools Don't Check.
6+ day, 20+ hour ago (1339+ words) Microsoft confirms April Windows updates cause backup failures CISA says "Copy Fail" flaw now exploited to root Linux systems FTC to ban data broker Kochava from selling Americans" location data The EOL Blind Spot in Your CVE Feed: What SCA…...
Consent Fix v3 attacks target Azure with automated OAuth abuse
1+ week, 2+ day ago (392+ words) A new attack type, dubbed Consent Fix v3, has been circulating on hacker forums, building on the previous technique by adding automation and scaling potential....
Py PI package with 1. 1 M monthly downloads hacked to push infostealer
2+ week, 19+ hour ago (520+ words) c Panel, WHM emergency update fixes critical auth bypass bug Hackers arrested for hijacking and selling 610, 000 Roblox accounts Official SAP npm packages compromised to steal credentials New Bluekit phishing service includes an AI assistant, 40 templates Learn 41 different languages with this…...
Critical js PDF flaw lets hackers steal secrets via generated PDFs
4+ mon, 5+ day ago (566+ words) FTC: Americans lost over $2. 1 billion to social media scams in 2025 Canada arrests three for operating "SMS blaster" device in Toronto Home security giant ADT data breach affects 5. 5 million people Popular Word Press redirect plugin hid dormant backdoor for years Hackers…...
Self-propagating supply chain attack hits 187 npm packages
7+ mon, 3+ week ago (996+ words) FTC: Americans lost over $2. 1 billion to social media scams in 2025 Canada arrests three for operating "SMS blaster" device in Toronto Home security giant ADT data breach affects 5. 5 million people Popular Word Press redirect plugin hid dormant backdoor for years Hackers…...
Open AI says GPT-6 is coming and it'll be better than GPT-5 (obviously)
8+ mon, 3+ week ago (676+ words) FTC: Americans lost over $2. 1 billion to social media scams in 2025 Canada arrests three for operating "SMS blaster" device in Toronto Home security giant ADT data breach affects 5. 5 million people Official SAP npm packages compromised to steal credentials Popular Word Press…...
Hackers exploit RCE flaws in Qinglong task scheduler for cryptomining
1+ week, 5+ day ago (582+ words) FTC: Americans lost over $2. 1 billion to social media scams in 2025 Canada arrests three for operating "SMS blaster" device in Toronto Home security giant ADT data breach affects 5. 5 million people Hackers exploit RCE flaws in Qinglong task scheduler for cryptomining Hackers…...