Related Threat Clusters
-
Gitea Vulnerability Exposes 30,000 Private Container Images to Attackers
A critical vulnerability, CVE-2026-27771, in Gitea's container registry allowed unauthenticated users to access private container images for nearly four years. Discovered by Noscope in April 2026, the flaw affects over…
8 articles · Updated May 28, 2026 -
Supply Chain Attack on node-ipc npm Package Exposes 822K Downloads to Credential Theft
A supply chain attack on the node-ipc npm package has compromised three versions (9.1.6, 9.2.3, 12.0.1) with credential-stealing malware. The attack exploited an expired domain to hijack a dormant maintainer account,…
11 articles · Updated May 15, 2026 -
Python Developer Avoids Backdoor Attack with AI Code Vetting
Roman Imankulov, a Python developer, was approached by a fake recruiter from a crypto startup seeking help with faulty proof-of-concept code. Suspicious of the request, he used an AI coding agent to analyze the code,…
2 articles · Updated June 16, 2026 -
Over 10,000 Linux Servers Infected by SystemBC Botnet Variant
A new Linux variant of the SystemBC remote access trojan has infected over 10,000 IP addresses worldwide, primarily targeting web servers. Discovered by Silent Push, the compromised servers include those hosting…
6 articles · Updated February 4, 2026
Recent Intelligence Reports
- Python dev saved from disaster by intuition... and AI — Theregister · June 16, 2026
- Gitea Flaw Left 30,000 Deployments' Private Container Images Readable for 4 Years — Techtimes · May 28, 2026
- Expired domain leads to supply chain attack on node — Csoonline · May 15, 2026
- Major malware adds Linux variant, thousands of hosting servers infected — Cybernews · February 4, 2026