threat-intel TeamPCP Linked To Redis Attacks Dating Back To 2020 And Later Supply Chain Campaign The threat actor known as TeamPCP has been active since 2020, engaging in a series of campaigns targeting internet-facing infrastructure and expanding into sophisticated supply chain attacks. Their tactics have evolved significantly, including weaponizing open-source libraries and deploying destructive malware, such as… The Hacker News · Aug 7, 2026 High IRsupply-chainkubernetesreact
threat-intel Kimi K3 Agents Found Redis Zero-Days and Built RCE Exploit, Researchers Say Researchers have discovered two remote code execution (RCE) vulnerabilities in Redis, identified through AI-assisted research. The vulnerabilities, dubbed ‘Kimi K3 agents,’ allowed attackers to exploit Redis versions 6.2… The Hacker News · Jul 24, 2026 High CVE-2026-25589CVE-2026-25243rcerediszero-day
threat-intel Unpatched Argo CD Repo-Server Flaw Could Let Attackers Take Over Kubernetes Clusters An unpatched vulnerability in Argo CD's repo-server component allows unauthenticated attackers to take over Kubernetes clusters by exploiting a lack of authentication and network policies. Synacktiv discovered the flaw i… The Hacker News · Jul 1, 2026 Critical CVE-2024-31989CVE-2025-55190CVE-2026-42880kubernetesargo cdnetwork policy
vulnerability Autonomous AI Tool Finds 2-Year-Old RCE Flaw in Redis (CVE-2026-23479) A 2-year-old remote code execution (RCE) vulnerability, CVE-2026-23479, was discovered in Redis 7.2.0 by an autonomous AI security tool, Team Xint Code. The flaw, stemming from a use-after-free issue in the `unblockClien… The Hacker News · Jun 3, 2026 High CVE-2026-23479UKuse-after-freerceredis