technadu@infosec.exchange
@technadu@infosec.exchange
Topics
-
Russia says a full VPN ban is technically “impossible” because VPNs are deeply embedded in banking, developer, and enterprise infrastructure.
Uncategorized
1
-
Iran-linked MuddyWater APT reportedly breached organizations across 9 countries in Q1 2026 using DLL sideloading, PowerShell implants, Chromium credential theft, and SOCKS5 tunneling
Uncategorized
1
-
TeamPCP claims it breached Mistral AI while the company confirms impact from the TanStack supply chain attack involving malicious NPM and PyPI packages.
Uncategorized
1
-
Fake Claude Code installers are deploying PowerShell stealers that abuse Chrome’s IElevator2 interface to extract browser credentials, cookies & payment data from developers
Uncategorized
1
-
Sophos reports that 71% of orgs faced identity-related breaches last year, with average costs reaching $1.64M.
Uncategorized
1
-
-
A fake Hugging Face repo impersonating OpenAI’s Privacy Filter model reportedly reached #1 trending while distributing infostealer malware.
Uncategorized
1
-
New survey:• 64% of developers report 25%+ productivity gains from AI• Top use cases: code writing, reviews, explanations• Claude Code, Gemini Code Assist & GitHub Copilot lead adoptionChallenges remain around cost, governance & code quality.
Uncategorized
1
-
ShinyHunters reportedly defaced Canvas login pages after another alleged Instructure breach.
Uncategorized
1
-
Canvas disruptions linked to alleged ShinyHunters extortion activity are impacting schools nationwide.
Uncategorized
1
-
New cloud worm “PCPJack” targets exposed infrastructure for credential theft.• Docker & Kubernetes targeted• API keys and SSH secrets harvested• Telegram-based C2 observed• No cryptomining payloads
Uncategorized
1
-
-
-
CVE-2026-41940 in cPanel & WHM under mass exploitation.550K+ servers potentially exposed → auth bypass → ransomware deployment
Uncategorized
1
-
-
Italy breach alert:IBM subsidiary hit, Salt Typhoon suspected.• Supply chain entry point• Critical infra exposure• Long-term espionage risk
Uncategorized
1
-
-
-
China-linked phishing ops exposed100+ domains, journalists targetedOutsourced cyber campaigns rising
Uncategorized
1
-
88% of arXiv papers leak hidden dataKeys, metadata, comments exposedSecurity papers worst affectedDocs = attack surface
Uncategorized
1