0

Axios NPM Package Compromised in Precision Attack

Thứ Ba, 31 tháng 3, 2026
The NPM package for Axios, a popular JavaScript HTTP client library, was briefly compromised this week, possibly by North Korean threat actors.
0

TeamPCP Breaches Cloud, SaaS Instances With Stolen Credentials

The threat group's shift to speedy attacks on AWS, Azure, and SaaS instances shows organizations need to respond quickly to compromised credentials.
0

AI-Powered 'DeepLoad' Malware Steals Credentials, Evades Detection

Thứ Hai, 30 tháng 3, 2026
The massive amount of junk code that hides the malware's logic from security scans was almost certainly generated by AI, researchers say.
0

Fortinet BIG-IP Vulnerability Reclassified as RCE, Under Exploitation

CVE-2025-53521 was initially disclosed in October as a high-severity denial-of-service (DoS) flaw, but new information has revealed the bug is actually much more dangerous.
0

Manufacturing and Healthcare Share Struggles with Passwords

The two key economic sectors struggle with security for a reason: Many insiders view access management as a roadblock, while attackers see it as a way in.
0

Storm Brews Over Critical, No-Click Telegram Flaw

The vulnerability, which is allegedly triggered by a corrupted sticker in the messaging app, received a 9.8 CVSS score, but Telegram denies it exists.
0

Coruna, DarkSword & Democratizing Nation-State Exploit Kits

Thứ Sáu, 27 tháng 3, 2026
Nation-state malware is being sold on the Dark Web and leaked to GitHub; and ordinary organizations might not stand much of a chance of defending themselves.