Week in review: Rail transport cybersecurity, “verified” OAuth apps used to infiltrate organizationsHelp Net Security·Feb 5, 00:00 UTC · Feb 5, 2023Data breachCVE-2022-27596CVE-2023-20076CVE-2023-22501160
SAP-Related npm Packages Compromised in CredentialThe Hacker News·Apr 30, 16:39 UTC · Apr 30, 2026Data breach60
Vercel Breach Tied to Context AI Hack Exposes Limited Customer CredentialsThe Hacker News·Apr 22, 15:14 UTC · Apr 22, 2026Data breach157
OpenAI Warns of Mixpanel Data Breach Impacting API UsersInfosecurity Magazine·Nov 27, 11:15 UTC · Nov 27, 2025Data breach57
IronWorm and New Miasma Worm Variant Hit npm in Supply Chain AttacksThe Hacker News·Jun 6, 06:23 UTC · Jun 6, 2026Data breach57
GitHub Internal Repositories Breached via Malicious Nx Console VS Code ExtensionThe Hacker News·May 28, 05:34 UTC · May 28, 2026Data breach in the wildCVE-2026-45321CVE-2026-4802760
Self-Replicating Worm Hits 180+ npm Packages to Steal Credentials in Latest Supply Chain AttackThe Hacker News·Sep 22, 15:17 UTC · Sep 22, 2025Data breach157
Pakistani military leverages Facebook Messenger for wideCyberScoop·May 15, 15:00 UTC · May 15, 2018Data breach in the wild60
IBM rolls out cybersecurity operations center on wheelsHelp Net Security·Oct 16, 00:00 UTC · Oct 16, 2018Data breach60