Cybersecurity

Ghost CMS Flaw Fuels Widespread ClickFix Malware

A critical SQL injection flaw (CVE-2026-26980) in Ghost CMS is being actively exploited to hijack website articles.Attackers have compromised over 700 legitimate websites across...

TrapDoor Malware Targets npm, PyPI, Crates.io in Supply Chain Attack

A coordinated supply chain attack, codenamed TrapDoor, has deployed malware across three major developer platforms: npm, PyPI, and Crates.io.The campaign targets crypto, DeFi, Solana,...

npm Staged Publishing Requires Human Approval

GitHub has introduced mandatory two-factor approval for npm package releases to combat software supply chain attacks.A new "staged publishing" feature requires human maintainers to...

Criminal VPN Service Dismantled in Global Operation

A criminal VPN service used by at least 25 ransomware groups was dismantled in a May 2026 global operation.The service, First VPN, advertised anonymity...

Canadian man arrested for Kimwolf DDoS botnet

A Canadian man was arrested for allegedly operating the Kimwolf DDoS botnet, a service sold to other cybercriminals.The botnet targeted firewalled internet-of-things devices and...

Exploited Microsoft Defender Flaws Prompt Urgent Fix

Two actively exploited vulnerabilities in Microsoft Defender, CVE-2026-41091 and CVE-2026-45498, have been patched according to an advisory dated May 21, 2026.The flaws, a privilege...

GitHub Breach Linked to Poisoned VS Code Extension

GitHub confirms a breach of its internal repositories via a poisoned Visual Studio Code extension.The attack was part of the larger TanStack supply chain...

Microsoft unveils AI security tools RAMPART, Clarity

Microsoft has launched two new open-source security tools, RAMPART and Clarity, designed for AI agent development.RAMPART is a testing framework for running safety and...

Latest news

LLM Agent Exploits Marimo Vulnerability, Steals Database

A threat actor used an LLM agent to automate post-exploitation actions after breaching a public-facing Marimo notebook via the...

Google Dividend Deadline: Buy GOOG By June 5

Investors in Alphabet (Google stock) must purchase shares by the close on June 5, 2026, to be eligible for...

CFTC Approves Kalshi to Offer U.S. Bitcoin Futures

The CFTC has approved Kalshi to offer Bitcoin perpetual futures, marking a major shift for the offshore-dominated asset class.Kalshi...