This period saw a severe escalation in supply chain attacks with the "Mini Shai-Hulud" campaign compromising the SAP developer ecosystem and other popular packages, affecting over 1,800 developers. Concurrently, CISA added two critical, actively exploited vulnerabilities to its KEV catalog: a Linux kernel privilege escalation flaw ("Copy Fail") and a cPanel authentication bypass zero-day, mandating immediate patching. Ransomware activity also remains high, with new campaigns from KRYBIT and NightSpire, while sophisticated social engineering attacks leveraging vishing and SaaS platforms continue to target major US industries.
Help others stay informed about cybersecurity threats
Curated and deduplicated every day from dozens of trusted sources — giving you one clean, consolidated view of what matters in cybersecurity.
Related stories are merged into a single evolving article rather than repeated as separate entries — cutting through noise so you only read what's new.
Every entry links to its full enriched article — complete with MITRE ATT&CK mappings, extracted IOCs, and actionable detection and mitigation guidance.