Over the past 24 hours, the cybersecurity landscape has been dominated by a surge in state-sponsored attacks targeting US critical infrastructure, with Iran-linked actors exploiting internet-exposed PLCs. Simultaneously, major supply chain compromises have rocked the open-source ecosystem, with tools like Trivy and Axios being poisoned. Healthcare remains a key target, evidenced by a crippling ransomware attack on EHR provider ChipSoft and a sensitive data breach at Hims & Hers. Meanwhile, active exploitation of Ivanti zero-days and new warnings about insecure building management systems highlight the expanding attack surface for enterprises globally.
Help others stay informed about cybersecurity threats
Curated and deduplicated every day from dozens of trusted sources — giving you one clean, consolidated view of what matters in cybersecurity.
Related stories are merged into a single evolving article rather than repeated as separate entries — cutting through noise so you only read what's new.
Every entry links to its full enriched article — complete with MITRE ATT&CK mappings, extracted IOCs, and actionable detection and mitigation guidance.