loader image
LiteLLM With 95 Million Downloads Compromised

TeamPCP hackers have compromised the litellm Python package, a tool with over 95 million monthly downloads, used to route requests across various large language model providers. Cybersecurity firms Endor Labs and JFrog discovered a sophisticated backdoor in versions 1.82.7 and 1.82.8 of the package on the Python Package Index (PyPI). The threat actors injected malicious […]

Darktrace Unveils Adaptive Human Defense

Darktrace unveils its new Adaptive Human Defense system, aiming to tailor security training and protection measures within organizations. This innovative system intends to transform cybersecurity by customizing defense strategies according to each company’s unique needs. Adaptive Human Defense uses advanced algorithms to enhance security training for employees, making it an integral part of a firm’s […]

PwC Reports Identity Attacks Surge After AI

The latest PwC Annual Threat Dynamics 2026 report highlights a concerning surge in identity attacks as artificial intelligence continues to reshape the cyber threat landscape. The report, which draws from a comprehensive study of recent cybersecurity trends, indicates that AI-powered tactics have given attackers innovative methods to infiltrate businesses and compromise sensitive information. These new […]

RSA Panel Says Pacts Vital as Government Absent

RSA panel says pacts between the public and private sectors are crucial in countering China’s sophisticated cyber threats, particularly through initiatives like the Typhoon programs. Despite a high-profile conference on the urgent need for collaboration, empty chairs symbolized the lack of government representation at the RSA 2026 discussion. Panelists stressed that government involvement is vital, […]

U.S. Jails Russian Hacker in $9M Ransomware Case

The U.S. jails a Russian hacker for 6.75 years due to his involvement in significant cybercrime activities, including aiding the Yanluowang ransomware gang. Aleksei Olegovich Volkov, a 26-year-old Russian national, received his sentence in the United States after being found guilty of facilitating dozens of ransomware attacks targeting American companies and organizations. The U.S. Department […]

Hackers Use Fake ChatGPT Invites to Hijack Android

Cybercriminals have initiated a deceptive campaign targeting Android users by masquerading malicious apps as invitations to test ChatGPT and Meta advertising tools. This scheme, where hackers use fake ChatGPT invites, aims to compromise Facebook credentials and seize users’ accounts. Attackers send emails from “firebase-noreply@google.com,” a legitimate Google service, which leads users to install harmful APK […]

Mandiant: Attackers Hand Off Access in 22 Seconds

Mandiant attackers are swiftly transferring access to compromised systems in a mere 22 seconds, according to the latest M-Trends 2026 report. This alarming speed underlines the persistent challenge organizations face in defending against breaches. The report, grounded in over 500,000 hours of incident response, highlights that exploits remain the predominant method for attackers to infiltrate […]

Mazda Breach Exposes Employee, Partner Data

Mazda Motor Corporation has revealed that a security breach exposed information belonging to its employees and business partners. The incident was detected last December, raising concerns over data privacy and protection within the automotive giant. The Mazda breach exposes employee data, potentially affecting sensitive corporate operations and relationships with business partners. While the company has […]

North Korea-Linked Hackers Use VS Code Auto-Run

North Korea-linked hackers are employing sophisticated techniques to distribute StoatWaffle malware via Microsoft Visual Studio Code’s auto-run feature. Identified as Team 8, these threat actors leverage the “tasks.json” feature within VS Code to execute malicious code whenever a folder is opened, as reported by NTT Security. These tactics involve using blockchain-related projects as decoys, pulling […]

FBI Warns Iran Used Telegram to Spy on Dissidents

The FBI warns Iran’s Ministry of Intelligence and Security is using Telegram as a command-and-control platform in a cyber campaign targeting dissidents and journalists. The malware attacks enable surveillance and data theft amid escalating geopolitical tensions in the Middle East. According to a recent alert, Iranian cyber actors deliver malware that disguises itself as legitimate […]

Aqua Trivy Scanner Compromised in Supply Chain

The Aqua Trivy scanner, a widely-used open-source tool for identifying vulnerabilities, recently became the target of a sophisticated supply chain attack. Cybercriminals infiltrated the distribution channel and released a malicious version of the scanner. By altering specific tags, these attackers redirected users towards information-stealing malware. This unauthorized release underscores the growing complexity and danger of […]

Global Crackdown Dismantles 4 DDoS Botnets

A global crackdown dismantles botnets responsible for significant distributed denial-of-service (DDoS) attacks, dealing a significant blow to cybercriminal operations. Authorities targeted four notorious botnets, aiming to curb their ability to disrupt online services. Known for orchestrating large-scale DDoS campaigns, the botnets, identified as “Aisuru,” “Kimwolf,” “Jackskid,” and “Mossad,” posed a severe threat to digital infrastructures […]