Recent Advisories

Severity ID Title Vendor Product Date Type
NONE THN:36DFCEAE362...

Amadey and StealC Malware Network Disrupted, 27M Stolen Credentials Recovered_THN:36DFCEAE362DA3903693266D7CB713F8

![Amadey and StealC Malware](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjBVSibdiZdJ1tNYJFrsHtZ8Vr1EG28rqKLY4E7HvAtuax2i3vgpcaMZjEAc...

N/A N/A THN
NONE HACKREAD:614136...

Fake npm Packages Impersonate PostCSS Tool to Steal Chrome Passwords_HACKREAD:6141367662A6D7A675D4167ED30B5E35

JFrog warns of malicious npm packages that mimic PostCSS tooling, drop a Windows RAT, and target Chrome-stored passwords through a staged infection...

N/A N/A HACKREAD
NONE MSSECURE:60CA47...

StealC and Amadey: Breaking down infostealers and the cybercrime services that deliver them_MSSECURE:60CA4794B9C1C6FE86B9F6D8449FB809

In this article 1. The role of infostealers: From credential theft to intrusion 2. StealC: Infostealer for rent 3. Amadey: Malware-as-a-serv...

N/A N/A MSSECURE
NONE THN:E2EC3832AE6...

Cordyceps CI/CD Flaws Expose 300+ GitHub Repositories to Supply-Chain Attacks_THN:E2EC3832AE69343D3B75867DA0A4F136

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjl_D6QzBWfQRZAXbjo9RhhLXSedzJR2Q2sUQoQYnDxpC7yETzJgn3KnpT8CcoqlfXdqkcnTCNcEpR1QKphy7...

N/A N/A THN
NONE MALWAREBYTES:0F...

“Total access to all your devices.” Sextortion scammers strike again_MALWAREBYTES:0FD9C7128A95FF6374187563C0B72426

At the moment, we’re seeing all kinds of sextortion emails. The scam is cheap to run, easy to automate, and apparently profitable enough that cyber...

N/A N/A MALWAREBYTES
NONE SCHNEIER:7A1236...

Embedding Forbidden Text in Spyware to Discourage AI Analysis_SCHNEIER:7A1236483F174AEC1AD949F80DF69235

At least one malware developer is adding text about nuclear and biological weapons to their spyware, in an effort to stop automatic AI analysis. D...

N/A N/A SCHNEIER
NONE THN:E39759F4A03...

Dawn of the Apex Agentic Adversary_THN:E39759F4A03F44F39AA790935B0FBE4A

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjuQ2GvCcnjBgMTXoXBXqazE9MU3nbNgeccOlWELBQOL9WcHHH4uXS1BKCrrmv6iWWAn6vu1LZJzpHl1MGetv...

N/A N/A THN
NONE F66CF4CF-53AC-

agentslastexam_F66CF4CF-53AC-54A7-B775-49F009E71162

pwnremotecapture A remote binary-exploitation task contributed to Agents' Last Exam. Two variants from one task module: the agent gets a running ne...

N/A N/A GITHUBEXPLOIT
NONE QUALYSBLOG:A246...

CERT-In’s AI Vulnerability Blueprint: Why Indian CISOs Need Machine-Speed Risk Operations in the Post-Mythos Era_QUALYSBLOG:A2463FDB3F5DB3414AFD13F999ADEC69

__A Qualys India perspective on CERT-In 's blueprint, the post-Mythos threat landscape India faces, and why the operating model needs to change.__ ...

N/A N/A QUALYSBLOG
NONE HACKREAD:F2E2A7...

Best Crypto Payment Solutions for E-Commerce Businesses_HACKREAD:F2E2A74ACB99D1596B11AE1540520FD6

Compare crypto payment gateways for ecommerce, including checkout tools, stablecoin payments, fiat settlement, plugins, APIs and business payouts.

N/A N/A HACKREAD