“Cyber warfare is as much about psychological strategy as technical prowess.”
― James Scott
-

Microsoft Warns Developers of Fake Next.js Job Repos Delivering In-Memory Malware [email protected] (The Hacker News)
A “coordinated developer-targeting campaign” is using malicious repositories disguised as legitimate Next.js projects and technical assessments to trick victims into executing them and establish persistent access to compromised machines. “The activity aligns with a broader cluster of threats that use job-themed lures to blend into routine developer workflows and increase the likelihood of codeRead More
-

Malicious StripeApi NuGet Package Mimicked Official Library and Stole API Tokens [email protected] (The Hacker News)
Cybersecurity researchers have disclosed details of a new malicious package discovered on the NuGet Gallery, impersonating a library from financial services firm Stripe in an attempt to target the financial sector. The package, codenamed StripeApi.Net, attempts to masquerade as Stripe.net, a legitimate library from Stripe that has over 75 million downloads. It was uploaded by…
-

Cisco SD-WAN Zero-Day CVE-2026-20127 Exploited Since 2023 for Admin Access [email protected] (The Hacker News)
A newly disclosed maximum-severity security flaw in Cisco Catalyst SD-WAN Controller (formerly vSmart) and Catalyst SD-WAN Manager (formerly vManage) has come under active exploitation in the wild as part of malicious activity that dates back to 2023. The vulnerability, tracked as CVE-2026-20127 (CVSS score: 10.0), allows an unauthenticated remote attacker to bypass authentication and obtainRead…
-

Google Disrupts UNC2814 GRIDTIDE Campaign After 53 Breaches Across 42 Countries [email protected] (The Hacker News)
Google on Wednesday disclosed that it worked with industry partners to disrupt the infrastructure of a suspected China-nexus cyber espionage group tracked as UNC2814 that breached at least 53 organizations across 42 countries. “This prolific, elusive actor has a long history of targeting international governments and global telecommunications organizations across Africa, Asia, and the Americas,”Read…
-

Claude Code Flaws Allow Remote Code Execution and API Key Exfiltration [email protected] (The Hacker News)
Cybersecurity researchers have disclosed multiple security vulnerabilities in Anthropic’s Claude Code, an artificial intelligence (AI)-powered coding assistant, that could result in remote code execution and theft of API credentials. “The vulnerabilities exploit various configuration mechanisms, including Hooks, Model Context Protocol (MCP) servers, and environment variables – executingRead More
-
LLM firewalls emerge as a new AI security layer
The race by organizations to AI-enable their operations and business workflows is exposing them to new risks that AI firewalls aim to address.Read More
-

SLH Offers $500–$1,000 Per Call to Recruit Women for IT Help Desk Vishing Attacks [email protected] (The Hacker News)
The notorious cybercrime collective known as Scattered LAPSUS$ Hunters (SLH) has been observed offering financial incentives to recruit women to pull off social engineering attacks. The idea is to hire them for voice phishing campaigns targeting IT help desks, Dataminr said in a new threat brief. The group is said to be offering anywhere between…
-

Top 5 Ways Broken Triage Increases Business Risk Instead of Reducing It [email protected] (The Hacker News)
Triage is supposed to make things simpler. In a lot of teams, it does the opposite. When you can’t reach a confident verdict early, alerts turn into repeat checks, back-and-forth, and “just escalate it” calls. That cost doesn’t stay inside the SOC; it shows up as missed SLAs, higher cost per case, and more room…
-

Malicious NuGet Packages Stole ASP.NET Data; npm Package Dropped Malware [email protected] (The Hacker News)
Cybersecurity researchers have discovered four malicious NuGet packages that are designed to target ASP.NET web application developers to steal sensitive data. The campaign, discovered by Socket, exfiltrates ASP.NET Identity data, including user accounts, role assignments, and permission mappings, as well as manipulates authorization rules to create persistent backdoors in victim applications.Read More
-

Manual Processes Are Putting National Security at Risk [email protected] (The Hacker News)
Why automating sensitive data transfers is now a mission-critical priority More than half of national security organizations still rely on manual processes to transfer sensitive data, according to The CYBER360: Defending the Digital Battlespace report. This should alarm every defense and government leader because manual handling of sensitive data is not just inefficient, it is…
“Security used to be an inconvenience sometimes, but now it’s a necessity all the time.”
― Martina Navratilova
