IronWorm Malware Infects 36 npm Packages in Supply Chain Attack
A new supply-chain attack has compromised 36 packages on the npm registry with the IronWorm infostealer malware, targeting developers' sensitive information.
Stories cluster related articles into a single narrative, linked to the underlying CVEs and affected products. 3,785 stories synthesized.
A new supply-chain attack has compromised 36 packages on the npm registry with the IronWorm infostealer malware, targeting developers' sensitive information.
A vulnerability in Anthropic's Claude Code GitHub Action enabled attackers to hijack public repositories by submitting a single malicious issue.
A critical vulnerability in B&R's PPT30 Operating System could allow unauthenticated attackers to render the OPC-UA server inaccessible, impacting critical infrastructure sectors worldwide.
CISA alerts users to two critical vulnerabilities in Hitachi Energy's ITT600 Explorer product that could allow remote attackers to cause denial-of-service conditions.
CISA has issued an advisory for a critical vulnerability in NAVTOR NavBox software, stemming from hard-coded credentials that could allow local attackers to manipulate files and disrupt operations.
Proofpoint warns that the financially motivated cybercrime group TA4922 is deploying a sophisticated and rapidly evolving arsenal of malware, including Atlas RAT, RomulusLoader, SilentRunLoader, and ValleyRAT, against organizations worldwide.
Wordfence Intelligence has disclosed 277 vulnerabilities affecting 184 WordPress plugins and 70 themes between May 25-31, 2026, including critical flaws in WP Maps Pro and WooCommerce Custom Product Addons Pro.
Advanced AI models are discovering vulnerabilities at an unprecedented rate, challenging traditional security remediation timelines and forcing vendors to innovate faster.
Key findings • Four high-severity vulnerabilities in Axios disclosed simultaneously on June 4th, 2026. • ReDoS vulnerability (CVE-2026-44496) due to unescaped cookie names in regex. • Res…
Key findings • High-severity authentication bypass (CVE-2026-10611) affects MISP with LDAP mixed auth and OTP. • Four medium-severity flaws include open redirect, URL validation, authorizatio…
Key findings • Three medium-severity vulnerabilities disclosed together for Itsourcecode Fees Management System 1.0. • Includes two SQL injection flaws (CVE-2026-10809, CVE-2026-10808) and on…
Key findings • Eight vulnerabilities disclosed by HCL Software between June 2-4, 2026. • Affected products include BigFix, Hive Telco Observability, iControl, and iReflection. • Vulnerabi…
Key findings • Three vulnerabilities disclosed by Dell between June 2-4, 2026. • CVE-2025-46638 in BSAFE SSL-J allows DoS for unauthenticated remote attackers. • ThinOS versions prior to …
A detailed tutorial circulating in hacker forums provides a step-by-step guide for aspiring attackers on how to identify, exploit, and monetize software vulnerabilities.
Cybercriminals are exploiting the widespread adoption of AI tools to distribute malware, creating sophisticated attacks that bypass traditional security measures, Microsoft's DART team reports.
The World Food Programme (WFP) is investigating a data breach impacting its self-registration application in Gaza, potentially exposing personal data of approximately 600,000 Palestinian households seeking aid.
Microsoft has resolved a bug that caused unexpected driver updates on Windows devices, stemming from a caching problem in its update system.
A new benchmark called ExploitBench reveals that Anthropic's Mythos AI model significantly outperforms OpenAI's GPT5.5 in generating exploits for Google Chrome vulnerabilities.
A new ransomware group, Payouts King, linked to former BlackBasta affiliates, is actively targeting organizations with sophisticated evasion techniques and a novel encryption strategy.
Proton employs machine learning and strict legal processes to combat the misuse of its privacy-focused services by cybercriminals, while upholding its core encryption guarantees.
Authorities in France and Spain have shut down an online marketplace that supplied fake identity documents to criminal organizations facilitating illegal immigration across the EU.
Key findings • Critical CVE-2026-4035 allows exfiltration of sensitive environment credentials via MLflow AI Gateway secrets. • Medium CVE-2026-3198 bypasses authorization checks on multiple …
Cisco Talos's Tony Giandomenico discusses the accelerating capabilities of frontier AI models and their impact on cybersecurity, highlighting both adversarial and defensive applications.
Cisco Talos outlines its proactive threat hunting strategy, which prioritizes forming hypotheses about adversary behavior over waiting for traditional alerts.