The npm package @7nohe/openapi-react-query-codegen, which receives roughly 150,000 weekly downloads, has been compromised by ...
Threat actors are impersonating web crawlers associated with OpenAI, Anthropic, DeepSeek, Google, Amazon, and other major brands to probe websites for exposed credentials, cloud keys, and private ...
An agent vendor walks into a security review today carrying a certification built for deterministic software, an expensive ...
Alleged Chinese-speaking actor breached Philippine nuclear and naval targets by exploiting known flaws, stealing sensitive ...
OpenAI agents hacked Hugging Face in a 700-strong swarm after 1,200 agents exchanged 70,000 messages. ETIH’s edtech news report explains how.
Chinese-speaking hackers exploited ownCloud and WordPress flaws to steal sensitive data from Philippine nuclear and naval ...
A breach at South Korea's government-backed startup platform exposed encrypted personal data after an encryption key was ...
Cybersecurity researchers have disclosed details of a previously undocumented Python implant framework dubbed TWINLOOT. "TWINLOOT is a modular, PyArmor-hardened Python implant designed to operate its ...
If you’ve ever found yourself needing to securely connect to a remote server, manage a Git repository, or even just transfer files without the hassle of constantly typing passwords, then you’ve ...
In October 2025, Microsoft Threat Intelligence identified destructive wiping activity and uncovered a sophisticated Go programming language (Golang)-based backdoor we now track as GigaWiper, a ...
A federal judge has ordered the Justice Department to release more unredacted Jeffrey Epstein records or justify keeping them sealed by July 2, with redacted versions of the files including sensitive ...
The Justice Department has effectively conceded it is violating the law Congress passed last November requiring the public release of the vast majority of records relating to convicted sex offender ...