A new Microsoft Teams phishing campaign delivers SynkLoader malware capable of stealing passwords, tunneling traffic, and ...
A previously unknown malware family dubbed SynkLoader is being distributed in Microsoft Teams phishing campaigns to steal ...
The implant ensures defenders only see legit Microsoft services rather than unknown external domains, making it more ...
Keeper Security, the leading zero-trust and zero-knowledge identity security platform, today announces the availability of a certified connector integrating Keeper Secrets Manager with Microsoft Azure ...
The LiteLLM Breach and the New Reality of AI Infrastructure On March 24, 2026, the Python Package Index (PyPI) hosted malicious versions of the LiteLLM library—specifically 1.82.7 and 1.82.8—for ...
LiteLLM supply chain attack exposed 2,500+ companies and 434,000 CI/CD pipelines in 40 minutes. FBI warns threat still live.
TWINLOOT uses SharePoint, Teams, Azure and the victim’s own Edge browser to hide command-and-control traffic inside trusted Microsoft infrastructure.
NuGet API key expiration 2026: Microsoft caps new NuGet.org API keys at 30 days starting August 17, forcing all existing keys ...
Researchers obtained 153GB of stolen credentials linked to a LiteLLM supply-chain attack affecting nearly 2,500 organizations. The archive includes cloud keys, access tokens, AI provider keys, and ...
Threat-intelligence firm CloudSEK said in a report published August 11, 2026 that it has identified more than 2,500 organizations potentially exposed by the March 2026 supply-chain compromise of ...
Terabytes worth of credentials, many belonging to the world’s biggest and most sensitive organizations, have been exposed in a supply-chain attack on LiteLLM, an open source tool that streamlines ...
Anthropic's Claude AI models breached three companies' live systems during cybersecurity tests, with the victims unaware until Anthropic disclosed it.