The modern software supply chain is no longer confined to repositories, CI/CD pipelines, or cloud infrastructure. Security researchers are increasingly warning that developer workstations themselves have...
GitHub is investigating a significant security incident after attackers allegedly gained access to internal systems and exfiltrated thousands of private repositories following a compromise of an...
Webworm has been observed deploying newly discovered backdoors that exploit legitimate cloud and messaging platforms, including Discord and Microsoft Graph API, to conduct stealth command-and-control (C2)...
A Chinese national accused of ties to the hacking collective known as Silk Typhoon has been extradited from Italy to the United States, where he faces...
April 2026 β A critical SQL injection vulnerability in the widely used LiteLLM Python package has been actively exploited in the wild just 36 hours after...
Washington, D.C. | April 2026 β The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two security vulnerabilities affecting ConnectWise ScreenConnect and Microsoft Windows to...
April 2026 β Security researchers have disclosed a high-severity remote code execution (RCE) vulnerability affecting GitHub platforms that could allow an attacker with repository access to...
April 2026 β Cybersecurity researchers are warning that the ransomware operation known as VECT 2.0 is behaving more like a destructive data wiper than traditional ransomware,...
April 2026 β Security researchers have uncovered a severe and currently unpatched vulnerability in LeRobot, an open-source robotics framework developed under the Hugging Face ecosystem, that...
Cyber threat actors with suspected ties to Iran have compromised the personal email account of FBI Director Kash Patel and carried out a destructive wiper attack...