The npm package node-ipc was compromised with credential-stealing malware; the tampered versions 9.1.6, 9.2.3, and 12.0.1 steal cloud credentials, SSH keys, and sensitive files via DNS exfiltration, likely due to a compromised maintainer account.
Russian military intelligence compromised over 18,000 outdated routers through DNS manipulation to steal Microsoft Office tokens, primarily targeting government organizations worldwide, without using malware—only exploiting known security vulnerabilities.
Microsoft Patch Tuesday April 2026 with 167 vulnerabilities, including the actively exploited SharePoint zero-day CVE-2026-32201, reflects likely volume increase in vulnerability discovery driven by advanced AI capabilities.
A leading hacker from the Scattered Spider group admitted to conducting extensive SMS phishing attacks and SIM swaps that stole at least 8 million dollars from cryptocurrency investors.
An unprotected security vulnerability in the Funnel Builder plugin for WordPress is being actively exploited to inject a payment card skimmer into WooCommerce checkout pages and steal credit card data and CVV codes.
Microsoft is blocking CVE assignment for a CERT-confirmed Azure Backup vulnerability with privilege escalation potential, despite documentation suggesting a retroactive fix was applied.
Brazilian DDoS protection company Huge Networks allegedly operated a botnet for years carrying out large-scale attacks on other ISPs, uncovered through leaked files and the company founder’s SSH keys.
The modernized Kazuar botnet uses a three-module system that minimizes external communication and obfuscates internal network communication to increase detection hurdles.
Canvas went offline after extortionists replaced the login page with a ransom demand and threatened to publish data on 25.5 million individuals from educational institutions.
The Catholic Church institutionalizes its AI governance through a new Vatican commission, underscoring its role as an ethical actor in technology policy.
The NGINX security vulnerability CVE-2026-42945 is already being actively exploited and enables worker process crashes or potentially remote code execution, with all NGINX versions from 0.6 being critically affected.