⚡ Weekly Recap: Linux Flaws, Defender 0-Days, Router Botnets, and Supply Chain Chaos

25/05/2026 0 Comments 0 tags

Monday recap. Same mess, new week. A sketchy dev tool got people pwned, old bugs came back from the dead, and security products somehow needed protecting from themselves. A bunch

The Alert Firehose Finally Meets Its Match

25/05/2026 0 Comments 0 tags

Ask a cybersecurity pro about Network Detection and Response (NDR) and you might still hear “Noisy,” “Too much data.” But ask the teams running NDR that includes agentic AI capabilities

Ghost CMS CVE-2026-26980 Exploited to Hijack 700+ Sites for ClickFix Attacks

25/05/2026 0 Comments 0 tags

Threat actors are exploiting a recently disclosed critical security flaw in Ghost CMS to inject malicious JavaScript code with an aim to fuel ClickFix attacks. According to QiAnXin XLab, the

Lazarus Deploys RemotePE Memory-Only RAT Against Financial and Crypto Firms

25/05/2026 0 Comments 0 tags

Cybersecurity researchers have shed light on a cross-platform malware called RemotePE that has been put to use by the North Korea-linked Lazarus Group in attacks targeting financial and cryptocurrency organizations.

TrapDoor Supply Chain Attack Spreads Credential-Stealing Malware via npm, PyPI, and CratesIO

25/05/2026 0 Comments 0 tags

A new coordinated cross-ecosystem software supply chain attack campaign has targeted npm, PyPI, and Crates.io to distribute credential-stealing malware. The campaign, codenamed TrapDoor, spans more than 34 malicious packages across

Packagist Supply Chain Attack Infects 8 Packages Using GitHub-Hosted Linux Malware

23/05/2026 0 Comments 0 tags

A new “coordinated” supply chain attack campaign has impacted eight packages on Packagist including malicious code designed to run a Linux binary retrieved from a GitHub Releases URL. “Although the

npm Adds 2FA-Gated Publishing and Package Install Controls Against Supply Chain Attacks

23/05/2026 0 Comments 0 tags

GitHub has rolled out new controls for npm to improve the security of the software supply chain, giving maintainers the ability to explicitly approve a release prior to the packages

Claude Mythos AI Finds 10,000 High-Severity Flaws in Widely Used Software

23/05/2026 0 Comments 0 tags

Anthropic on Friday disclosed that Project Glasswing has helped uncover more than 10,000 high- or critical-severity vulnerabilities across some of the most “systemically” important software across the world since the

Laravel-Lang PHP Packages Compromised to Deliver Cross-Platform Credential Stealer

23/05/2026 0 Comments 0 tags

Cybersecurity researchers have flagged a fresh software supply chain attack campaign that has targeted multiple PHP packages belonging to Laravel-Lang to deliver a comprehensive credential-stealing framework. The affected packages include

Drupal Core SQL Injection Bug Actively Exploited, Added to CISA KEV

23/05/2026 0 Comments 0 tags

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a recently patched critical security flaw impacting Drupal Core to its Known Exploited Vulnerabilities (KEV) catalog, based on evidence of