Cybersecurity

GitHub Probes Internal Repo Theft

GitHub is investigating unauthorized access to its internal repositories after a threat actor listed its source code for sale.The attack involved a compromised employee...

Android “Trapdoor” Ad Fraud Scheme Uncovered

Trapdoor campaign funneled malvertising into ad fraud using 455 malicious Android apps and 183 C2 domains.The operation generated 659 million daily bid requests at...

Drupal Urges Emergency Update by May 20

Drupal will release a critical security fix for its CMS on May 20, 2026, warning that exploits could appear "within hours or days."Patches will...

Four Malicious npm Packages Steal Data, Spread Botnet

Four malicious npm packages discovered distributing information-stealing malware and a DDoS botnet.One package contains a clone of the open-source Shai-Hulud worm leaked by TeamPCP.Attackers...

NGINX Under Active Attack After Patch Release

A critical heap buffer overflow vulnerability (CVE-2026-42945) in NGINX is being actively exploited in the wild, allowing for denial-of-service or potential remote code execution.Exploitation...

Grafana Code Breach & Extortion Attempt Revealed

Grafana disclosed a data breach where an unauthorized party accessed its GitHub and downloaded its codebase.The cybercrime group CoinbaseCartel has claimed responsibility for the...

Turla’s Kazuar Malware Evolves Into Stealthy P2P Botnet

The Russian state-sponsored group Turla (aka Secret Blizzard) has evolved its Kazuar malware into a modular, peer-to-peer botnet.This new architecture features three specialized modules—Kernel,...

Microsoft Exchange Under Attack Via New XSS Bug

Microsoft disclosed an actively exploited spoofing vulnerability tracked as CVE-2026-42897 in on-premise Exchange Server versions.The flaw allows attackers to execute arbitrary JavaScript by sending...

Latest news

U.S. Lawmakers Push “Fort Knox” Bitcoin Reserve Plan

The ARMA Act proposes creating a U.S. Strategic Bitcoin Reserve, backed by 5% of the global supply and funded...

The Secret Behind Shiba Inu’s Meteoric 2021 Rise

Shiba Inu's 2021 rally was fueled by a massive token burn by Ethereum co-founder Vitalik Buterin, creating a major...

npm Staged Publishing Requires Human Approval

GitHub has introduced mandatory two-factor approval for npm package releases to combat software supply chain attacks.A new "staged publishing"...