DigiCert Revokes Certificates After Hack
DigiCert revoked certificates after hackers infiltrated its support portal via a customer chat channel on May 05, 2026. Details on the breach and fallout.
DigiCert revoked certificates after hackers infiltrated its support portal via a customer chat channel on May 05, 2026. Details on the breach and fallout.
Two malicious versions of PyTorch Lightning were pushed to PyPI on April 30, 2026, in a supply chain attack targeting developers’ credentials. Details inside.
On April 30, 2026, SAP-related npm packages were compromised in a supply chain attack dubbed mini Shai-Hulud, injecting credential-stealing malware into dev environments. Details reveal how attackers infiltrated trusted tools used by enterprise developers.
Vect 2.0 ransomware contains a fatal flaw that turns it into a wiper—victims can’t decrypt data even if they pay. Details from April 30, 2026.
Checkmarx confirms data stolen in GitHub supply chain attack on March 30, 2026. Attackers exfiltrated data after injecting malicious code. Details on what was compromised and what developers should do now.
On April 29, 2026, a malicious npm package linked to DPRK actors infiltrated AI-driven development tools. The attack exploited Anthropic’s Claude Opus. Details reveal a new era of supply chain threats. .