ScarCruft Exploits Gaming Platform in Supply Chain Cyberattack
ScarCruft trojanized a gaming platform to deploy backdoors on Windows and Android. Review supply chain and application trust.
§The archiveMon · Wed · FriM · W · F
Every dispatch we've sent. AI-curated, human-reviewed, from 50+ cybersecurity sources.
Follow on LinkedInBrowse by topic
ScarCruft trojanized a gaming platform to deploy backdoors on Windows and Android. Review supply chain and application trust.
New cPanel vulnerability exploited to target government and MSP networks. Patch immediately and audit exposure.
Critical unauthenticated RCE in Weaver E-cology is being actively abused in the wild. Organizations should patch affected builds and monitor for payloads.
Progress Software patches a critical MOVEit Automation flaw that could bypass authentication. Immediate action recommended to apply updates.
Tiny package-based attack chain shows rapid compromise across popular software ecosystems.
Exim fixes address memory corruption, crash and data leakage risks across widely used mail servers.
Education tech giant confirms breach; extortion group claims responsibility with potential student data exposure.
Technical PoC publicly released for CVE-2026-41940; vast exploitation activity observed in wild, enabling pre-authentication access and server compromise.
Mini Shai-Hulud supply-chain attack breached SAP-related NPM packages to steal credentials; review dependencies and monitor for credential theft.
April 2026 Windows 11 update breaks third-party backup software; assess vendor patches and rollback options to avoid data loss.
A maximum severity remote code execution flaw in the Gemini CLI and related GitHub Actions could allow attackers to run code on host systems. Apply patches immediately.
Active exploitation of a critical auth bypass in cPanel/WHM has been observed in the wild for months, enabling unauthorized admin access. Patch and containment efforts are underway.
RCE in GitHub's internal git infra could allow full server compromise; authenticated access required.
Critical pre-auth SQL injection in LiteLLM openly exploited in the wild, exposing cloud credentials.
VECT 2.0 acts more as a data wiper due to encryption nonce flaws; recovery unlikely even for attackers.
Flawed Entra ID role could enable privilege escalation; Microsoft issued patches after discovery by researchers.
ADT confirms data breach following ShinyHunters' extortion claim; millions potentially affected.
Two actively exploited SimpleHelp remote-support flaws pose direct access risks to networks.
State-sponsored actors chain CVEs to backdoor FXOS/ASA devices; FIRESTARTER persists after patches.
New Windows RPC flaw PhantomRPC enables LPE with multiple exploitation paths; disclosed at Black Hat Asia 2026.
Get these articles delivered to your inbox.
Subscribe free