Daily Digest

Massive "Mini Shai-Hulud" Supply Chain Attack Hits SAP Ecosystem; CISA Warns of Actively Exploited Linux and cPanel Zero-Days

Massive "Mini Shai-Hulud" Supply Chain Attack Hits SAP Ecosystem; CISA Warns of Actively Exploited Linux and cPanel Zero-Days

May 2, 2026
9 articles (7 new, 2 updated)
27 min read

Summary

This period saw a severe escalation in supply chain attacks with the "Mini Shai-Hulud" campaign compromising the SAP developer ecosystem and other popular packages, affecting over 1,800 developers. Concurrently, CISA added two critical, actively exploited vulnerabilities to its KEV catalog: a Linux kernel privilege escalation flaw ("Copy Fail") and a cPanel authentication bypass zero-day, mandating immediate patching. Ransomware activity also remains high, with new campaigns from KRYBIT and NightSpire, while sophisticated social engineering attacks leveraging vishing and SaaS platforms continue to target major US industries.

Filter by Category

New Articles (7)

Updated Articles (2)

📢 Share This Publication

Help others stay informed about cybersecurity threats

📅 Daily Edition

Curated and deduplicated every day from dozens of trusted sources — giving you one clean, consolidated view of what matters in cybersecurity.

🔢 Deduplication Applied

Related stories are merged into a single evolving article rather than repeated as separate entries — cutting through noise so you only read what's new.

🔗 Full Articles Linked

Every entry links to its full enriched article — complete with MITRE ATT&CK mappings, extracted IOCs, and actionable detection and mitigation guidance.