ESET researchers reported a supply-chain attack by the North Korean APT group ScarCruft, targeting a gaming platform in the Yanbian region of China. The attack, ongoing since late 2024, involved trojanizing both Windows…
A new supply chain attack, dubbed 'Mini Shai-Hulud', has compromised multiple npm packages related to SAP's Cloud Application Programming Model (CAP). This attack involves injecting malicious preinstall scripts into…
On June 4, 2026, Microsoft updated its 'Taxonomy of Failure Modes in Agentic AI Systems' based on a year of red teaming. The update highlights the emergence of zero-click attack chains that can bypass human-in-the-loop…
On July 24, 2026, NETSCOUT announced a significant expansion of its Arbor Cloud DDoS protection capabilities, doubling its capacity to 33 Tbps. This enhancement is in response to the increasing frequency and complexity…
A new variant of the SHub macOS infostealer, named 'Reaper', has been detected using a fake Google Software Update to maintain persistence on infected systems. This malware targets macOS users by masquerading as…