Archives

Triaging the Week 101
State-sponsored espionage, active exploitation of critical vulnerabilities in legacy hardware and popular software, and new malware campaigns targeting cloud services and user credentials in triaging the week 101.

Triaging the Week 100
State-sponsored espionage using Windows Group Policy, new malware (SantaStealer, PyStoreRAT, DocSwap) distributed through phishing, fake GitHub repos, and compromised app stores in triaging the week 100.

Triaging the Week 099
Active exploitation of the critical “React2Shell” vulnerability, malicious VSCode extensions target developers, and urgent security warnings for Fortinet, Ivanti, and Docker Hub users in triaging the week 099.

Triaging the Week 098
Critical supply chain vulnerabilities, compromised browser extensions, maximum-severity RCE flaws in React frameworks, and the rise of malicious AI models in triaging the week 098.

Triaging the Week 097
WhatsApp metadata exposure affecting 3.5 billion accounts, a critical Grafana admin takeover vulnerability, a foiled insider threat at CrowdStrike, and a third-party breach impacting OpenAI in triaging the week 097.

Triaging the Week 096
Automated AI cyberattacks, law enforcement actions against bulletproof hosting services, evolving threats from North Korean hackers, and new supply chain vulnerabilities in triaging the week 096.

Triaging the Week 095
Glassworm malware returns, critical container escape flaws in runC, a side-channel attack on encrypted AI chats called ‘WhisperLeak’, and malicious NuGet packages with “time bomb” payloads in triaging the week 095.

Triaging the Week 094
AI-powered malware and autonomous code-fixing agents, state-sponsored attacks, critical vulnerabilities, and sophisticated fraud networks in triaging the week 094.

Triaging the Week 093
Sophisticated phishing and ransomware campaigns, critical vulnerabilities in widely used software, and attacks on critical infrastructure make the headlines in triaging the week 093.

Triaging the Week 092
Cybercrime makes staggering income, ClickFix attacks and malicious extensions remain prevalent, and AI browsers targeted in traiging the week 092.

Triaging the Week 091
SonicWall VPN, F5, Harvard, Cisco, and Oracle come under fire, Capita fined record-breaking amount by ICO, and even more malicious coding extensions in triaging the week 091.

Triaging the Week 090
Flaws in Redis, GoAnywhere, and AI browsers, Docker hardens images for everyone, and hackers target payroll in triaging the week 090.
