TeamPCP Traced Back to 2020 Cryptojacking OperationInfosecurity Magazine·Aug 6, 14:15 UTC · Aug 6, 2026Vulnerability155
LiteLLM PyPI packages compromised in expanding TeamPCP supply chain attacksHelp Net Security·Mar 27, 10:18 UTC · Mar 27, 2026Vulnerability42
GitHub, Grafana Labs breaches traced back to TanStack supply chain compromiseHelp Net Security·May 21, 00:00 UTC · May 21, 2026Vulnerability142
⚡ Weekly Recap: AI-Powered Phishing, Android Spying Tool, Linux Exploit, GitHub RCE & MoreThe Hacker News·May 5, 05:41 UTC · May 5, 2026Vulnerability in the wildCVE-2026-41940CVE-2026-31431CVE-2026-3854+2 CVEs60
Weekly Recap: Outlook Add-Ins Hijack, 0-Day Patches, Wormable Botnet & AI MalwareThe Hacker News·Feb 23, 11:00 UTC · Feb 23, 2026Vulnerability in the wildCVE-2026-2441CVE-2026-1731CVE-2026-2070060
ThreatsDay Bulletin: PAN-OS RCE, Mythos cURL Bug, AI Tokenizer Attacks, and 10+ StoriesThe Hacker News·May 15, 00:00 UTC · May 15, 2026VulnerabilityCVE-2026-030060
Supply chain attack hits widely-used AI package, risks impacting thousands of companiesThe Record·Jun 18, 00:00 UTC · Jun 18, 2026Vulnerability42
Miasma Worm Hits 73 Microsoft GitHub Repositories in Major Supply Chain AttackThe Hacker News·Jun 9, 05:50 UTC · Jun 9, 2026Vulnerability142
SmokedMeat: Open-source tool shows what attackers do inside CI/CD pipelinesHelp Net Security·Apr 20, 00:00 UTC · Apr 20, 2026Vulnerability42
How LiteLLM Turned Developer Machines Into Credential Vaults for AttackersThe Hacker News·Apr 8, 10:59 UTC · Apr 8, 2026Vulnerability155
GitHub dismissed security reports on flaws now exploited by supplyThe Record·Jun 17, 08:52 UTC · Jun 17, 2026Vulnerability42
Miasma Supply Chain Attack Compromises Red Hat npm Packages with CredentialThe Hacker News·Jun 2, 08:55 UTC · Jun 2, 2026Vulnerability42
Containers on fire: from container escapes to supply chain attacksKaspersky Securelist·Jun 1, 10:00 UTC · Jun 1, 2026Vulnerability in the wildCVE-2019-5736CVE-2022-0492CVE-2024-21626160
CISA chief frets about open-source vulnerabilities, delayed security improvementsCyberScoop·May 21, 17:05 UTC · May 21, 2026Vulnerability in the wild160
LiteLLM CVE-2026-42208 SQL Injection Exploited within 36 Hours of DisclosureThe Hacker News·May 9, 10:15 UTC · May 9, 2026Vulnerability in the wildCVE-2026-42208160
CISA sounds alarm on Langflow RCE, Trivy supply chain compromise after rapid exploitationHelp Net Security·Mar 27, 00:00 UTC · Mar 27, 2026Vulnerability in the wildCVE-2026-33017CVE-2026-33634160