ThreatsDay Bulletin: Linux Rootkits, Router 0-Day, AI Intrusions, Scam Kits and 25 New Stories
This week starts small. A token leaks. A bad package slips in. A login trick works. An old tool shows…
BlogInsights, tips, and news from the frontlines of cybersecurity.
This week starts small. A token leaks. A bad package slips in. A login trick works. An old tool shows…
BlogMicrosoft has disclosed that a privilege escalation and a denial-of-service flaw in Defender has come under active exploitation in the…
BlogConsider a cached access key on a single Windows machine. It got there the way most cached credentials do –…
BlogGitHub on Wednesday officially confirmed that the breach of its internal repositories was the result of a compromise of an…
BlogDrupal has released security updates for a “highly critical” security vulnerability in Drupal Core that could be exploited by attackers…
BlogMicrosoft has unveiled two new open-source tools called RAMPART and Clarity to assist developers in better testing the security of…
BlogMicrosoft on Tuesday said it disrupted a malware-signing-as-a-service (MSaaS) operation that weaponized the company’s Artifact Signing system to deliver malicious…
BlogCybersecurity researchers have flagged fresh activity from a China-aligned threat actor known as Webworm in 2025, deploying custom backdoors that…
BlogGrafana Labs, on May 19, 2026, said an investigation into its recent breach found no evidence of customer production systems…
BlogGitHub on Tuesday said it’s investigating unauthorized access to its internal repositories after the notorious threat actor known as TeamPCP…
BlogLet's talk about how we can protect and power your digital operations.