1Password is a tool tracked across 10 threat clusters and 20 intelligence report mentions on ThreatCluster. First observed November 26, 2025; most recent activity July 1, 2026.
On July 1, 2026, security firm SlowMist identified a fake trading bot on GitHub designed to spread malware targeting Polymarket users and DeFi developers. The bot, named 'polymarket-arbitrage-bot', was promoted as a…
The TeamPCP threat group has expanded its supply chain attack campaign, compromising the Microsoft DurableTask Python client with versions v1.4.1, v1.4.2, and v1.4.3 found to contain a credential-stealing worm. This…
A new supply chain attack, dubbed 'Mini Shai-Hulud', has compromised multiple npm packages related to SAP's Cloud Application Programming Model (CAP). This attack involves injecting malicious preinstall scripts into…
On May 20, 2026, GitHub confirmed a significant security breach involving a poisoned Visual Studio Code (VS Code) extension that compromised an employee's device. The attack, attributed to the TeamPCP hacking group,…
RubyGems has introduced dependency cooldowns in Bundler to mitigate supply chain attacks that exploit newly published packages. This feature delays the installation of packages until they have been available for a…
Perplexity's Comet AI browser has been compromised through a novel attack method called 'Agentic Blabbering', which exploits the browser's interaction with AI services. Analysts from Guardio reported that this phishing…
Oracle Red Bull Racing has implemented identity and access management (IAM) tools from 1Password to streamline operations and enhance security in the face of stringent Formula 1 regulations. The team has experienced…
Zenity Labs disclosed a family of critical vulnerabilities known as PleaseFix, affecting agentic browsers including Perplexity Comet. These vulnerabilities enable zero-click agent hijacking, local file exfiltration, and…
Researchers from ETH Zurich and Università della Svizzera italiana identified vulnerabilities in four cloud-based password managers: Bitwarden, LastPass, Dashlane, and 1Password. These flaws could allow attackers to…
Xillen Stealer has evolved to version 5, incorporating advanced AI features that enable it to evade detection and target sensitive data from password managers. The malware now includes aggressive capabilities aimed at…