Structured data rendered for: CollectionPage
Back to Blog
26 posts with this tag

#Credential Theft

26 posts

Cl0p Turns PTC Windchill Exploitation Into a Purpose-Built Extortion Platform

Cl0p Turns PTC Windchill Exploitation Into a Purpose-Built Extortion Platform Product lifecycle management systems are not usually the first asset class defende...

Last updated on 19/08/2026 at 1:17 PM
5 min read
Metabase zero-day turns BI dashboards into a data-exposure path

Metabase zero-day turns BI dashboards into a data-exposure path

Metabase zero-day turns BI dashboards into a data-exposure path Metabase has confirmed active exploitation of CVE-2026-72898, a critical unauthenticated [SQL in...

Last updated on 15/08/2026 at 1:46 PM
6 min read
Swiss SharePoint breach shows why patching alone may not end the incident

Swiss SharePoint breach shows why patching alone may not end the incident

Swiss SharePoint breach shows why patching alone may not end the incident Switzerland's federal IT office has confirmed a cyberattack against SharePoint servers...

Last updated on 09/08/2026 at 8:07 AM
6 min read
Windmill CVE-2026-29059 turns log access into a secrets problem

Windmill CVE-2026-29059 turns log access into a secrets problem

Windmill CVE-2026-29059 turns log access into a secrets problem Attackers are now exploiting CVE-2026-29059, a Windmill path traversal flaw that lets unauthenti...

Last updated on 17/08/2026 at 12:56 PM
7 min read
Vect and TeamPCP show how stolen build secrets become ransomware access

Vect and TeamPCP show how stolen build secrets become ransomware access

Vect and TeamPCP show how stolen build secrets become ransomware access Sophos says two cybercrime groups, Vect and TeamPCP, have formalized a partnership that...

Last updated on 05/07/2026 at 8:07 AM
7 min read
JADEPUFFER shows how agentic AI can turn exposed Langflow into ransomware

JADEPUFFER shows how agentic AI can turn exposed Langflow into ransomware

JADEPUFFER shows how agentic AI can turn exposed Langflow into ransomware Sysdig has documented what it assesses as one of the first clear examples of agentic r...

Last updated on 04/07/2026 at 7:47 PM
6 min read
SimpleHelp CVE-2026-48558 exploitation turns RMM into a credential-theft path

SimpleHelp CVE-2026-48558 exploitation turns RMM into a credential-theft path

SimpleHelp CVE-2026-48558 exploitation turns RMM into a credential-theft path SimpleHelp has moved from patched vulnerability to active intrusion path. Attacker...

Last updated on 17/08/2026 at 12:56 PM
9 min read
Mastra npm compromise turns AI agent builds into credential-theft risk

Mastra npm compromise turns AI agent builds into credential-theft risk

Mastra npm compromise turns AI agent builds into credential-theft risk The Mastra npm incident is a sharp warning for teams building AI agents: dependency compr...

Last updated on 17/08/2026 at 12:56 PM
8 min read
Red Hat npm compromise proves provenance alone is not enough

Red Hat npm compromise proves provenance alone is not enough

Red Hat npm compromise proves provenance alone is not enough Red Hat has confirmed that multiple packages published under the @redhat-cloud-services npm namespa...

Last updated on 17/08/2026 at 12:56 PM
6 min read
One-Click github.dev Attack Lets Malicious Repos Steal Full GitHub Tokens

One-Click github.dev Attack Lets Malicious Repos Steal Full GitHub Tokens

One-Click github.dev Attack Lets Malicious Repos Steal Full GitHub Tokens | 2026 Executive Summary Security researcher Ammar Askar disclosed a one-click attack...

Last updated on 17/08/2026 at 12:56 PM
7 min read
LLMShare Turns Trusted AI Domains Into Malware Delivery Infrastructure

LLMShare Turns Trusted AI Domains Into Malware Delivery Infrastructure

LLMShare Turns Trusted AI Domains Into Malware Delivery Infrastructure | 2026 Executive Summary Push Security disclosed a live campaign it tracks as LLMShare, w...

Last updated on 17/08/2026 at 12:56 PM
7 min read
FortiClient EMS exploit turns endpoint management into credential theft at scale

FortiClient EMS exploit turns endpoint management into credential theft at scale

FortiClient EMS exploit turns endpoint management into credential theft at scale CVE-2026-35616 matters because it breaks a security assumption many teams quiet...

Last updated on 17/08/2026 at 12:56 PM
5 min read
Next