Related Threat Clusters
-
Codecov Bash Uploader Security Incident Overview
On April 1, 2021, Codecov discovered unauthorized modifications to its Bash Uploader script, which allowed a threat actor to extract sensitive information from users' CI environments. The malicious changes targeted…
2 articles · Updated August 15, 2026 -
Grok Build CLI Exposes User Data by Uploading Entire Git Repositories
The Grok Build CLI from xAI was found to be automatically uploading entire Git repositories to Google Cloud, including sensitive data and unredacted secrets. This behavior persisted even when users instructed the CLI…
10 articles · Updated July 14, 2026 -
Phishing Campaign Exploits Google Storage to Deploy Remcos RAT
A phishing campaign has been detected that exploits Google Cloud Storage to deliver the Remcos remote access trojan (RAT). Attackers host a fake Google Drive login page on the legitimate domain storage.googleapis.com,…
6 articles · Updated April 9, 2026 -
Columbia University Data Breach Exposes 2.5 Million Applicants' Data
In June 2025, Columbia University suffered a significant data breach, initially misreported as a technical failure. The breach, attributed to a politically motivated hacktivist, resulted in the exfiltration of 460 GB of…
2 articles · Updated June 4, 2026 -
New AiTM Phishing Campaign Targets TikTok for Business Accounts
A recent phishing campaign has emerged, specifically targeting TikTok for Business accounts. Cybercriminals have registered multiple adversary-in-the-middle (AiTM) phishing pages on March 24, 2026, using a common naming…
4 articles · Updated March 27, 2026 -
Google Vertex AI SDK Vulnerability Enables Code Execution via Bucket Squatting
A vulnerability in Google's Vertex AI SDK for Python allowed attackers to hijack machine learning model uploads and execute arbitrary code within Google's infrastructure. Discovered by Palo Alto Networks' Unit 42, the…
8 articles · Updated June 17, 2026 -
Critical Buffer Overflow Fix for GoAccess in Fedora 43 and 44
GoAccess versions 1.11 and 1.11-1 have been updated to address a critical heap buffer overflow vulnerability affecting Fedora systems. The flaw, which arises from parsing malformed Opera user agents, could lead to…
3 articles · Updated August 3, 2026 -
Podcast Discusses Cybersecurity Trends and Ethical Hacking
A podcast released on February 1, 2026, covers various aspects of cybersecurity, including ethical hacking. The discussion emphasizes the importance of understanding cookie usage and data privacy in the context of…
1179 articles · Updated February 1, 2026 -
IIT Roorkee Denies JEE Advanced 2026 Data Breach Claims
On June 5, 2026, IIT Roorkee and the Ministry of Education refuted claims of a data breach affecting JEE Advanced 2026 candidates. A temporary cloud storage misconfiguration was reported by ethical hacker Rylen Anil,…
18 articles · Updated June 5, 2026 -
Phishing Campaign Leverages Google Cloud Storage for Malicious Redirects
A phishing campaign has been identified that exploits Google Cloud Storage (GCS) to host malicious redirect links. By utilizing a legitimate Google-owned domain, attackers are able to bypass email security measures,…
5 articles · Updated March 4, 2026
Recent Intelligence Reports
- Security Update — about.codecov.io · August 15, 2026
- Fedora 43 GoAccess 1.11 Important Buffer Overflow Fix 2026 — Linuxsecurity · August 3, 2026
- Musk pledges data purge after Grok Build secretly downloaded entire Git repositories — Feeds.4Sysops · July 14, 2026
- Grok Build CLI silently uploads full Git repositories to xAI cloud storage — Feeds.4Sysops · July 14, 2026
- Google Cloud Vertex AI SDK flaw allowed model hijacking and code execution — Scworld · June 17, 2026
- JEE Advanced: IIT Roorkee denies data leak claims, calls reports misleading — Deccanherald · June 5, 2026
- 460 gigabytes — cloudstoragesecurity.com · June 4, 2026
- OpenAI Agents SDK Major Update Adds File and Code Execution in Sandboxes — Kucoin · April 16, 2026