Grafana Labs Breach: Hackers Steal Code Via GitHub Token
Grafana Labs hit by security breach: hackers stole privileged GitHub token, downloaded private code, then demanded ransom. The company disclosed the incident publicly.
Grafana Labs hit by security breach: hackers stole privileged GitHub token, downloaded private code, then demanded ransom. The company disclosed the incident publicly.
Chinese-language Phishing-as-a-Service (PhaaS) platforms have significantly evolved, now incorporating artificial intelligence and sophisticated MFA bypass techniques. These commercial services lower the barrier to entry for cybercriminals, offering turnkey phishing solutions with advanced evasion c
Security researchers have disclosed a critical zero-click exploit chain targeting Google Pixel 10 devices that leverages a vulnerability in the Visual Processing Unit (VPU) driver to achieve full root access without user interaction. The attack chain, discovered during internal security testing, com
A sophisticated phishing campaign dubbed “CodeStorm” is leveraging compromised Microsoft 365 accounts to launch large-scale credential harvesting attacks. Attackers are exploiting trusted email relationships and M365 infrastructure to bypass security controls, targeting organizations across multiple
Cybercriminals have published multiple malicious npm packages impersonating the legitimate PostCSS ecosystem to distribute a Windows Remote Access Trojan (RAT). The packages use typosquatting and dependency confusion techniques to trick developers into downloading malware that establishes persistent
INTERPOL’s Operation Ramz strikes hard: 201 arrested, 382 suspects identified across MENA region. Major cybercrime networks dismantled in historic crackdown.
OpenAI confirms employee devices compromised in TanStack supply chain attack. Code-signing certificates rotated after breach affected hundreds of npm and PyPI packages.
Department of Homeland Security (DHS) Secretary Markwayne Mullin has identified specific staffing targets for the Cybersecurity and Infrastructure Security Agency (CISA) amid ongoing federal workforce reductions. This organizational restructuring comes at a critical juncture when cyber threats again
New Linux kernel flaw “Fragnesia” gives attackers instant root access. Public exploit code already available. Patch now before threat actors weaponize it.
AI voice cloning is evolving fast. From customer service to deepfake scams, synthetic voices are reshaping communication and security threats alike.