144 Mastra npm Packages Compromised via Hijacked Contributor Account
CISA Warns of Actively Exploited Joomla JCE Flaw Allowing PHP Code Execution

The Return of WhiteDate

ClickFix Campaigns Expand Malware Delivery With New Loaders and Fake Update Lures
Google Vertex AI SDK Flaw Let Attackers Hijack Model Uploads via Bucket Squatting

No Coexistence Possible

100 Days of Adolf Hitler Appreciation
New Rokarolla Android Malware Steals PINs, SMS Codes, and Crypto Wallet Funds
The Old Guard

The Old Guard

Survey: 94% of Incidents Involve Anonymized Infrastructure. Teams Are Still Reactive
China-Linked SprySOCKS Backdoor Expands to Windows with Driver-Based Stealth
Attackers Exploit Three Fortinet FortiSandbox Flaws, One Patched Last Week
Fake Microsoft Alerts Used to Deploy North Korean NarwhalRAT Malware
Warning ‘Alboflation’ not under control despite interest rate pause
CISA Flags LiteSpeed cPanel Plugin Flaw Exploited for Root Privilege Escalation