Recent Advisories

Severity ID Title Vendor Product Date Type
NONE TRENDMICROBLOG:...

Analyzing TeamPCP’s Supply Chain Attacks: Checkmarx KICS and elementary-data in CI/CD Credential Theft_TRENDMICROBLOG:530B75494CFEF7819D0E71B25BD22F21

Our research examines the April 22 Checkmarx KICS and April 24 elementary-data incidents as part of a broader TeamPCP supply chain campaign. Across...

N/A N/A TRENDMICROBLOG
NONE HACKREAD:323B67...

TeamPCP Claims Sale of Mistral AI Repositories Amid Mini Shai-Hulud Attack_HACKREAD:323B676A5C744446B50A93718BA1FCB7

TeamPCP claims to be selling alleged Mistral AI repositories on a hacker forum after the Mini Shai-Hulud attack targeted npm and PyPI ecosystems.

N/A N/A HACKREAD
MEDIUM 6.5 AVLEONOV:3CD2FA...

Про уязвимость Spoofing – Microsoft SharePoint Server (CVE-2026-32201)_AVLEONOV:3CD2FACD509D5020D0C71E2A00E9CE0F

![Про уязвимость Spoofing - Microsoft SharePoint Server \(CVE-2026-32201\)](https://avleonov.com/wp-content/uploads/2026/05/[email protected]) **A...

N/A N/A AVLEONOV
NONE HACKREAD:EC3573...

Instructure Reaches Deal with ShinyHunters to Prevent Canvas Data Leak_HACKREAD:EC357392EB176D1406EC0BBC69C54C3A

Instructure has reached an agreement with the ShinyHunters group to return and destroy stolen Canvas data, protecting millions of student records f...

N/A N/A HACKREAD
NONE WIRED:3440CB593...

DHS Plans Experiment Running ‘Reconnaissance’ Drones Along the US-Canada Border_WIRED:3440CB593C9A28361FA8642B81FB86E5

Autonomous drones and ground vehicles will stream “battlefield intelligence” over 5G along the US-Canada border in a bilateral DHS experiment this ...

N/A N/A WIRED
NONE HACKREAD:2A2A3F...

TeamPCP Used Mini Shai-Hulud Worm to Poison Over 400 npm and PyPI Packages_HACKREAD:2A2A3F2FF20CA5DE580A3BDE445BDA13

Research reveals that TeamPCP hijacked OIDC tokens to poison hundreds of TanStack, Mistral AI, and UiPath packages with the self-propagating Mini S...

N/A N/A HACKREAD
CRITICAL 9.8 THN:8D8A624B659...

Microsoft’s MDASH AI System Finds 16 Windows Flaws Fixed in Patch Tuesday_THN:8D8A624B659D1D5813988E8172EF0381

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEg1Iq16GS3jdGiIU24GHBkwg6unk05ctdgYwXO5df8zRu1qko95_XhszCjq6jlEIRozLsrtZHgi5GqDZnS1Sw...

N/A N/A THN
NONE MALWAREBYTES:E2...

Texas sued Netflix over claims it secretly collected and sold users’ data_MALWAREBYTES:E2443EBC2801BD24971C639702CBD4B6

Attorney General (AG) of Texas Ken Paxton announced that he sued Netflix for spying on Texans, including children, and collecting users’ data witho...

N/A N/A MALWAREBYTES
NONE HACKREAD:5E59B3...

Slovakian Admin of Dark Web Kingdom Market Jailed for 16 Years in US_HACKREAD:5E59B3FA23B8CFC993C215A371DD13A7

A Slovakian administrator tied to the dark web Kingdom Market received a 16 year US prison sentence for drug trafficking and cybercrime activity.

N/A N/A HACKREAD
NONE WIRED:7C6EC7E6B...

WhatsApp Adds Meta AI Chats That Are Built to Be Fully Private_WIRED:7C6EC7E6B574027C814E6A1B6563FACB

The company says its new Incognito Chat allows you to use its AI chatbot without anyone else—including Meta—being able to access your conversations.

N/A N/A WIRED