(Image credit: OpenAI) Researchers uncovered a malicious npm package posing as a Codex UI tool Attackers exfiltrated Codex authentication tokens, […]
Category: Security
Multiple Linux distros hit by major ‘CIFSwitch’ flaw that gives attackers root access
(Image credit: Shutterstock) Researcher Asim Viladi Oglu Manizada disclosed CIFSwitch, a Linux privilege‑escalation flaw lingering for nearly 20 years Affects […]
Miasma Supply Chain Attack Compromises Red Hat npm Packages with Credential-Stealing Worm
A new Mini Shai-Hulud supply chain attack campaign, codenamed Miasma, has compromised @redhat-cloud-services packages to steal credentials and secrets from […]
WP Maps Pro plugin flaw to create admin accounts on WordPress sites saw 3,600 attempts in a single day
(Image credit: Shutterstock/David MG) Researchers disclosed a critical flaw in WP Maps Pro allowing attackers to create hardcoded admin accounts […]
⚡ Weekly Recap: New Linux Flaw, PAN-OS Exploit, AI-Powered Attacks, OAuth Phishing and More
Ravie LakshmananJun 01, 2026Cybersecurity / Hacking Monday hit like a cron job with anger issues. A busted auth path here, […]
17 million strong botnet of compromised devices dismantled by Dutch authorities
(Image credit: Getty Images) Dutch NCSC and police dismantled a 17M‑device botnet by taking down 200 servers Asocks, previously tied […]
Meta patches flaw that allowed MetaAI support bot to hand out password reset links without 2FA
(Image credit: Getty Images / NurPhoto) Cybercriminals tricked Meta’s AI customer support agent into forwarding password reset codes Stolen short‑handle […]
China-Aligned Groups Ramp Up Attacks: Dragon Weave Hits Czech Republic & Taiwan
A new cyber espionage campaign codenamed Operation Dragon Weave has been observed targeting officials and citizens in the Czech Republic […]
The Security Growth Platform: Why MSPs Are Moving Beyond vCISO Tools
Three years ago, the practical question for an MSP building a cybersecurity practice was which “vCISO platform” to buy. The […]
OpenAI Codex Authentication Tokens Stolen in codexui-android npm Supply Chain Attack
Cybersecurity researchers have disclosed details of a new malicious supply chain campaign that’s targeting developers using OpenAI Codex through a […]
