Handala Hack is linked to HEAVYGRAM, a Python backdoor using Telegram for C2, alongside CRUDEEXCLUDE, a Delphi staging utility targeting Windows systems. A reminder to monitor trusted platforms for abuse. #ThreatIntel#CyberSecurity
https://t.co/OQe7Jibs1r
Hacktron researchers used Claude Opus 5 to exploit a Discourse image bug and chain it with an OpenAI SSO flaw to hijack staff ChatGPT/Codex accounts. #OpenAI#CyberSecurity#AISecurity
https://t.co/PJNT0Oc1hP
ShinyHunters hijacked Clop's Tor leak site, defaced it and claims to have stolen data and onion keys to extort the operators themselves. #Ransomware#ShinyHunters#Clop
https://t.co/J1aKhzrkXa
One malicious extension can hijack Gemini, Claude, Comet and Edge AI agents via BragJack attack. Your browser assistant becomes attacker-controlled. #Cybersecurity#AIsecurity#BrowserSecurity
https://t.co/cU59rRutlI
13 malicious npm packages caught delivering WeaselBiscuit, a new JS stealer targeting Chrome extension storage. Similar to BeaverTail/OtterCookie, but attribution unclear. #InfoSec#npm#SupplyChain
https://t.co/GIzzbe6IWK
A Qwen-powered search tool was removed from the U.S. Federal Register website after scrutiny over its link to Alibaba and Chinese AI policy concerns. A small deployment can expose a major governance gap. #CyberSecurity#AI#ThreatIntel
https://t.co/TMlugQ9PWE
Fake GitHub repos posing as LastPass Authenticator spread Rapuncel stealer plus a signed EDR-killer driver. 40+ brands impersonated. Stick to official sources. #Cybersecurity#InfoStealer#EDR
https://t.co/rCdxYWd6Wq
Plugin4Shell: repo owners can silently swap pinned plugin code in Claude Code, Codex, Copilot and Gemini CLI while agents still show the old version. #SupplyChain#AISecurity#InfoSec
https://t.co/qx0TgmnSpT
Gyazo breach exposes ~23.6M user records after Sept 11 server intrusion via image upload vulnerability. Account data and private image links at risk. #Gyazo#DataBreach#Cybersecurity
https://t.co/hBaTT4KzmS
Schneider Electric discloses CVE-2026-13348 in PowerChute Serial Shutdown: unlimited login attempts enable brute-force account takeover. Patch now to protect UPS management. #CyberSecurity#InfoSec
https://t.co/QYhzrtZ81h
Hacktron AI researchers used Claude to exploit a HEIF flaw in Discourse and access OpenAI's employee account and dev environment. AI-assisted third-party breach. #CyberSecurity#AISecurity#OpenAI
https://t.co/RwgcZVfSqe
Operation RapidRust: Transparent Tribe (APT36) targets India & Afghanistan govt with new Rust backdoor RUSTYSHADE using private GitHub repos as C2. #APT36#CyberSecurity#ThreatIntel
https://t.co/HUZAm0Y9ji
Researcher published 4 working Linux kernel exploits for local root: DirtyAH6, TUNderflow, PPPoEject, DiagSpill. Unpatched hosts at risk — patch now. #LinuxSecurity#InfoSec#Kernel
https://t.co/6FZ9OsCaGS
WordPress patches Click2Shell: a logged-in admin visit can be forced to install & preview a https://t.co/3k2ofDZ7uO theme, opening path to code execution. Update core now. #WordPress#CyberSecurity#InfoSec
https://t.co/NY7rzAPXJe
Google Gemini accessed real corporate systems during a security test after a fictional domain turned out to be real. A small naming error, major implications for AI agents. #AIsecurity#CyberSecurity
https://t.co/TPBxm3Hcc6
Critical RCE in Orkes Conductor (CVE-2026-58138) allows unauthenticated attackers to execute OS commands via malicious workflows. Patch to 3.30.2 and isolate APIs now. #CyberSecurity#RCE#ThreatIntel
https://t.co/R1tiv3yrV2