malware Operation FlutterBridge: macOS Malvertising Campaign Spreads New FlutterShell Backdoor Palo Alto Unit 42 is tracking ‘Operation FlutterBridge,’ a widespread malvertising campaign targeting macOS users. The campaign, a follow-up to the ‘JSCoreRunner’ campaign, utilizes malicious desktop applications built w… Palo Alto Unit 42 · Jun 2, 2026 High USmacosmalvertisingbackdoor
supply-chain Red Hat npm packages compromised to steal developer credentials A supply-chain attack targeting Red Hat npm packages resulted in the distribution of a new variant of the Shai-Hulud credential-stealing malware, dubbed 'Miasma'. The attackers compromised a Red Hat employee's GitHub acc… BleepingComputer · Jun 1, 2026 High USsupply chaincredential theftgithub
threat-intel Anthropic to Open Mythos AI to EU's ENISA This article reports that Anthropic is granting access to its Mythos AI model to the European Union’s ENISA as part of the Project Glasswing initiative. Mythos, an AI model capable of autonomously discovering and exploit… Dark Reading · Jun 1, 2026 High EUUSaivulnerabilitycybersecurity
supply-chain Miasma Supply Chain Attack Compromises Red Hat npm Packages with Credential-Stealing Worm A new supply chain attack, dubbed Miasma, has compromised Red Hat npm packages, utilizing a self-propagating worm to steal credentials and secrets from developer machines. The attack, leveraging techniques similar to the… The Hacker News · Jun 1, 2026 High USsupply chain attackcredential theftgithub actions
malware WordPress malware campaign hides payloads in Steam profiles A WordPress malware campaign has infected nearly 2,000 websites by hiding command-and-control (C2) data within Steam Community profile comments. The attackers utilize invisible Unicode characters to encode malicious payl… BleepingComputer · Jun 1, 2026 High USwordpresssteemunicode
vulnerability Patch Now: Another Palo Alto Auth Bypass Bug Under Active Exploit A vulnerability in Palo Alto Networks' PAN-OS GlobalProtect VPN technology, tracked as CVE-2026-0257, is currently being actively exploited. Attackers are leveraging a configuration flaw to bypass authentication and gain… Dark Reading · Jun 1, 2026 Critical CVE-2026-0257CVE-2025-0108USvpnauthenticationcookie
threat-intel Race Against Time: Why Faster Vulnerability Alerts Matter This article highlights the critical importance of rapid vulnerability alerts in cybersecurity, emphasizing the increasing speed at which vulnerabilities are being discovered and exploited. The average time to exploitati… BleepingComputer · Jun 1, 2026 High USvulnerabilityexploitationcybersecurity
threat-intel Containers on fire: from container escapes to supply chain attacks This Securelist article examines the evolving threat landscape targeting container environments, highlighting key attack vectors used by groups like TeamPCP. The analysis focuses on vulnerabilities, supply chain attacks… Securelist · Jun 1, 2026 High CVE-2019-5736CVE-2022-0492CVE-2024-21626UScontainerskubernetessupply chain
supply-chain OpenAI Codex Authentication Tokens Stolen in codexui-android npm Supply Chain Attack A supply chain attack targeting OpenAI Codex developers has been discovered through a malicious npm package named ‘codexui-android’. The package, developed by ‘friuns’ (Igor Levochkin) and promoted by ‘BrutalStrike’, sil… The Hacker News · Jun 1, 2026 High USsupply chainauthenticationtokens
threat-intel OpenClaw: risks for agent users and how to mitigate them This Securelist article highlights the significant security risks associated with OpenClaw, a popular AI agent ecosystem used globally for automating tasks. The system’s widespread adoption, combined with a large marketp… Securelist · Jun 1, 2026 High USai agentsautomationsupply chain
vulnerability Palo Alto GlobalProtect VPN auth bypass flaw now exploited in attacks Palo Alto Networks is warning of an actively exploited vulnerability (CVE-2026-0257) in its GlobalProtect VPN software, allowing attackers to bypass authentication and establish unauthorized VPN connections. The flaw, in… BleepingComputer · May 30, 2026 High CVE-2026-0257USvpnauthenticationcookie
data-breach California AG sues 23andMe over 2023 breach exposing health data 23andMe faced a significant data breach in 2023, exposing the personal and genetic information of nearly 7 million customers, including a large number in California. The breach stemmed from a credential-stuffing attack a… BleepingComputer · May 29, 2026 High USdata breachgenetic datacredential stuffing
threat-intel ChatGPhish Vulnerability Turns ChatGPT Web Summaries Into a Phishing Surface A vulnerability, dubbed ChatGPhish, has been discovered in OpenAI’s ChatGPT that allows attackers to leverage the AI’s summarization feature to create phishing attacks. By appending malicious content to a webpage, attack… The Hacker News · May 29, 2026 High CVE-2026-25592CVE-2026-26030USprompt injectionphishingai
ddos From $5 Attacks to Botnet-Powered Platforms: Inside the DDoS-as-a- Service Market This article reports on the increasing commercialization of Distributed Denial-of-Service (DDoS) attacks, now offered as a ‘DDoS-as-a-Service’ (DDoSaaS) model. The trend shows a shift from fragmented, DIY attack methods… BleepingComputer · May 29, 2026 High USddosbotnetcloudflare
threat-intel With Complex Cloud Integrations, Small Errors Lead to Major Compromises This article details a near-breach at Zapier, a popular low-code automation service, highlighting the risks associated with complex cloud integrations and inadequate security practices. Researchers at Token Security disc… Dark Reading · May 29, 2026 High UScloud-securitysecretspermissions
threat-intel 'The Com' Cyberattacks Support Violence & Sexploitation This report details the activities of 'The Com,' a decentralized cybercriminal collective primarily composed of North American teenagers, many linked to groups like ShinyHunters, Lapsus$, and Scattered Spider. The group… Dark Reading · May 29, 2026 Critical USGBcybercrimechild exploitationhacktivism
data-breach California Sues 23andMe, Alleging It Failed to Protect User Data in 2023 Breach California’s Attorney General has filed a lawsuit against 23andMe, alleging a significant data breach in 2023 that exposed the personal information of nearly 7 million users. The lawsuit highlights 23andMe’s lax security… SecurityWeek · May 29, 2026 High USdata breachgenetic datapassword security
threat-intel Chilling Effects This article details a concerning trend of self-censorship and disengagement among students and professionals in the United States, driven by the perceived threat of punitive measures from the Trump administration. The p… Schneier on Security · May 29, 2026 High UScensorshipfearconformity
threat-intel US charges Google security engineer with Polymarket insider trading A Google security engineer, Michele Spagnuolo, has been charged with insider trading after exploiting confidential ‘Year in Search’ data to profit from bets on the Polymarket prediction market. He used his access to Goog… BleepingComputer · May 29, 2026 High USITSWinsider-tradingconfidential-datacryptocurrency
data-breach Charter Communications data breach affects 4.9 million accounts Charter Communications experienced a data breach impacting approximately 4.9 million accounts following a sophisticated attack by the ShinyHunters extortion gang. The attackers gained access through a voice phishing (vis… BleepingComputer · May 29, 2026 High USCHdata breachvishingsalesforce