Archive for April, 2026

By Ionut Arghire

A member of Silk Typhoon, Xu Zewei is accused of launching cyberattacks against universities in the US.

The post Alleged Chinese State Hacker Extradited to US appeared first on SecurityWeek.

…read more

Source:: securityweek

By Ionut Arghire

The Mini Shai-Hulud attack introduced a preinstall hook to fetch and execute a Bun binary and bypass security monitoring.

The post SAP NPM Packages Targeted in Supply Chain Attack appeared first on SecurityWeek.

…read more

Source:: securityweek

By Ionut Arghire

The hackers exfiltrated the data from Checkmarx’s GitHub environment on March 30, a week after publishing malicious code.

The post Checkmarx Confirms Data Stolen in Supply Chain Attack appeared first on SecurityWeek.

…read more

Source:: securityweek

By Eduard Kovacs

Itron, which serves utilities and cities around the world, discovered unauthorized access to its systems on April 13.

The post Energy and Water Management Firm Itron Hacked appeared first on SecurityWeek.

…read more

Source:: securityweek

By Ionut Arghire

Dubbed GopherWhisper, the group relies on multiple Go-based backdoors alongside custom loaders and injectors.

The post China-Linked APT GopherWhisper Abuses Legitimate Services in Government Attacks appeared first on SecurityWeek.

…read more

Source:: securityweek

By Ionut Arghire

The initial vulnerability was exploited by Russia-linked APT28 in attacks against Ukraine and EU countries.

The post Incomplete Windows Patch Opens Door to Zero-Click Attacks appeared first on SecurityWeek.

…read more

Source:: securityweek

By Ionut Arghire

A fake RPC server can be used to listen for RPC requests and impersonate the target service to elevate privileges to System.

The post No Patch for New PhantomRPC Privilege Escalation Technique in Windows appeared first on SecurityWeek.

…read more

Source:: securityweek

The majority of universities have either adopted AI or intend to soon.

…read more

Source:: Security magazin

2025 healthcare breaches dropped from 2024

…read more

Source:: Security magazin

By Ionut Arghire

The threat actor infected victims with the Snow malware family – Snowbelt, Snowglaze, and Snowbasin – for persistent access.

The post UNC6692 Uses Email Bombing, Social Engineering to Deploy ‘Snow’ Malware appeared first on SecurityWeek.

…read more

Source:: securityweek