FBI: TeamPCP Compromised Dev Tools to Steal Cloud CredentialsSecurity Affairs·Jul 4, 16:08 UTC · Jul 4, 2026RansomwareCVE-2026-33634CVE-2026-48027CVE-2026-45321+1 CVEs60
Newly discovered PamStealer isn't your typical macOS malwareArs Technica · Security·Jul 2, 19:38 UTC · Jul 2, 2026Malware30
Inside Mistic, the New Stealth Backdoor in Ransomware IntrusionsSecurity Affairs·Jun 25, 15:07 UTC · Jun 25, 2026Ransomware57
Iranian Cyber Response to Death of IRGC Head Would Likely Use Reported TTPs and Previous AccessRecorded Future·Jun 23, 00:00 UTC · Jun 23, 2026Threat actor45
ThreatsDay Bulletin: Worm Code Leaked, AI Agent Phished, Claude Code Patch + 28 New StoriesThe Hacker News·Jun 12, 05:36 UTC · Jun 12, 2026Vulnerability142
Hades PyPI Attack: 19 Packages Poisoned to AutoThe Hacker News·Jun 9, 10:34 UTC · Jun 9, 2026Malware42
For the 2nd time in weeks, Microsoft packages laced with credential stealerArs Technica · Security·Jun 8, 18:34 UTC · Jun 8, 2026Malware42
FIFA World Cup 2026 Scams Are Already Live: Fake Sites, Banking Malware, and Stolen LoginsThe Hacker News·Jun 5, 07:01 UTC · Jun 5, 2026Malware30
Threat Actors Exploit Critical FortiClient EMS Flaw to Deploy Credential StealerThe Hacker News·May 31, 12:13 UTC · May 31, 2026MalwareCVE-2026-3561660
PAN-OS GlobalProtect Authentication Bypass (CVE-2026The Hacker News·May 31, 12:13 UTC · May 31, 2026Vulnerability in the wildCVE-2026-0257CVE-2026-3561660
CVE-2026-35616: FortiClient EMS Flaw Actively Exploited in Malware AttacksSecurity Affairs·May 29, 09:02 UTC · May 29, 2026Vulnerability in the wildCVE-2026-3561660
U.S. CISA adds Daemon Tools, TanStack, and Nx Console flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·May 28, 13:14 UTC · May 28, 2026Exploit / PoC in the wildCVE-2026-8398CVE-2026-45321CVE-2026-4802760
Compromised Nx Console 18.95.0 Targeted VS Code Developers with Credential StealerThe Hacker News·May 25, 09:00 UTC · May 25, 2026Malware142
Laravel-Lang PHP Packages Compromised to Deliver CrossThe Hacker News·May 24, 08:14 UTC · May 24, 2026Malware42
Grafana Labs Says Code Breach Stemmed from TanStack AttackInfosecurity Magazine·May 21, 08:00 UTC · May 21, 2026Ransomware57
Mini Shai-Hulud Pushes Malicious AntV npm Packages via Compromised Maintainer AccountThe Hacker News·May 21, 05:56 UTC · May 21, 2026Malware42
GitHub, Grafana Labs breaches traced back to TanStack supply chain compromiseHelp Net Security·May 21, 00:00 UTC · May 21, 2026Vulnerability142
GitHub Confirms Breach of Internal RepositoriesInfosecurity Magazine·May 20, 10:45 UTC · May 20, 2026Ransomware60
RubyGems Suspends New Signups After Hundreds of Malicious Packages Are UploadedThe Hacker News·May 18, 08:40 UTC · May 18, 2026Ransomware57
TeamPCP Compromises Checkmarx Jenkins AST Plugin Weeks After KICS Supply Chain AttackThe Hacker News·May 15, 00:00 UTC · May 15, 2026Malware42
TCLBANKER Banking Trojan Targets Financial Platforms via WhatsApp and Outlook WormsThe Hacker News·May 15, 00:00 UTC · May 15, 2026Malware42
‘Mini Shai-Hulud’ malware compromises hundreds of open-source packages in sprawling supplyCyberScoop·May 12, 21:38 UTC · May 12, 2026Malware155
Quasar Linux RAT (QLNX): A Fileless Linux Implant Built for Stealth and PersistenceSecurity Affairs·May 9, 13:11 UTC · May 9, 2026Malware42
Malicious PyTorch Lightning update hits AI supply chain securitySecurity Affairs·May 6, 07:04 UTC · May 6, 2026Malware42
Bluekit phishing kit enables automated phishing with 40+ templates and AI toolsSecurity Affairs·May 4, 06:46 UTC · May 4, 2026Phishing & fraud30
SAP-Related npm Packages Compromised in CredentialThe Hacker News·Apr 30, 16:39 UTC · Apr 30, 2026Data breach60
Checkmarx Confirms GitHub Repository Data Posted on Dark Web After March 23 AttackThe Hacker News·Apr 27, 14:19 UTC · Apr 27, 2026Ransomware57
STX RAT Targets Finance Sector With Advanced Stealth TacticsInfosecurity Magazine·Apr 9, 15:00 UTC · Apr 9, 2026Malware30
DeepLoad Malware Combines ClickFix With AIInfosecurity Magazine·Mar 30, 12:00 UTC · Mar 30, 2026Malware30
CISA sounds alarm on Langflow RCE, Trivy supply chain compromise after rapid exploitationHelp Net Security·Mar 27, 00:00 UTC · Mar 27, 2026Vulnerability in the wildCVE-2026-33017CVE-2026-33634160
⚡ Weekly Recap: CI/CD Backdoor, FBI Buys Location Data, WhatsApp Ditches Numbers & MoreThe Hacker News·Mar 26, 15:38 UTC · Mar 26, 2026Malware in the wildCVE-2026-33017CVE-2026-2013160
TeamPCP Expands Supply Chain Campaign With LiteLLM PyPI CompromiseInfosecurity Magazine·Mar 25, 12:00 UTC · Mar 25, 2026Threat actor157
Ghost Campaign Uses 7 npm Packages to Steal Crypto Wallets and CredentialsThe Hacker News·Mar 25, 07:01 UTC · Mar 25, 2026Threat actor45
TeamPCP Hacks Checkmarx GitHub Actions Using Stolen CI CredentialsThe Hacker News·Mar 25, 06:34 UTC · Mar 25, 2026Data breachCVE-2026-3363460
‘CanisterWorm’ Springs Wiper Attack Targeting IranKrebs on Security·Mar 23, 19:04 UTC · Mar 23, 2026Malware42
Trivy Supply Chain Attack Expands With New Compromised Docker ImagesInfosecurity Magazine·Mar 23, 15:05 UTC · Mar 23, 2026Ransomware57
Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer DataThe Hacker News·Jan 20, 10:47 UTC · Jan 20, 2026Malware30
Malicious Chrome Extension Steals MEXC API Keys by Masquerading as Trading ToolThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2026Threat actor45
Iran-Linked MuddyWater Targets 100+ Organizations in Global Espionage CampaignThe Hacker News·Dec 8, 06:03 UTC · Dec 8, 2025Threat actor57