Ghost CMS CVE-2026-26980 Exploited to Hijack 700+ Sites for ClickFix Attacks

25/05/2026 0 Comments 0 tags

Threat actors are exploiting a recently disclosed critical security flaw in Ghost CMS to inject malicious JavaScript code with an aim to fuel ClickFix attacks. According to QiAnXin XLab, the

Lazarus Deploys RemotePE Memory-Only RAT Against Financial and Crypto Firms

25/05/2026 0 Comments 0 tags

Cybersecurity researchers have shed light on a cross-platform malware called RemotePE that has been put to use by the North Korea-linked Lazarus Group in attacks targeting financial and cryptocurrency organizations.

TrapDoor Supply Chain Attack Spreads Credential-Stealing Malware via npm, PyPI, and CratesIO

25/05/2026 0 Comments 0 tags

A new coordinated cross-ecosystem software supply chain attack campaign has targeted npm, PyPI, and Crates.io to distribute credential-stealing malware. The campaign, codenamed TrapDoor, spans more than 34 malicious packages across

Packagist Supply Chain Attack Infects 8 Packages Using GitHub-Hosted Linux Malware

23/05/2026 0 Comments 0 tags

A new “coordinated” supply chain attack campaign has impacted eight packages on Packagist including malicious code designed to run a Linux binary retrieved from a GitHub Releases URL. “Although the

npm Adds 2FA-Gated Publishing and Package Install Controls Against Supply Chain Attacks

23/05/2026 0 Comments 0 tags

GitHub has rolled out new controls for npm to improve the security of the software supply chain, giving maintainers the ability to explicitly approve a release prior to the packages

Claude Mythos AI Finds 10,000 High-Severity Flaws in Widely Used Software

23/05/2026 0 Comments 0 tags

Anthropic on Friday disclosed that Project Glasswing has helped uncover more than 10,000 high- or critical-severity vulnerabilities across some of the most “systemically” important software across the world since the

Laravel-Lang PHP Packages Compromised to Deliver Cross-Platform Credential Stealer

23/05/2026 0 Comments 0 tags

Cybersecurity researchers have flagged a fresh software supply chain attack campaign that has targeted multiple PHP packages belonging to Laravel-Lang to deliver a comprehensive credential-stealing framework. The affected packages include

Drupal Core SQL Injection Bug Actively Exploited, Added to CISA KEV

23/05/2026 0 Comments 0 tags

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a recently patched critical security flaw impacting Drupal Core to its Known Exploited Vulnerabilities (KEV) catalog, based on evidence of

LiteSpeed cPanel Plugin CVE-2026-48172 Exploited to Run Scripts as Root

23/05/2026 0 Comments 0 tags

A maximum-severity security vulnerability impacting LiteSpeed User-End cPanel Plugin has come under active exploitation in the wild. The flaw, tracked as CVE-2026-48172 (CVSS score: 10.0), relates to an instance of

First VPN Dismantled in Global Takedown Over Use by 25 Ransomware Groups

22/05/2026 0 Comments 0 tags

Authorities in Europe and North America have announced the dismantling of a criminal virtual private network (VPN) service used by criminal actors to obscure the origins of ransomware attacks, data