< ciso
brief />
Incidents and Data Breaches Banner

All news in category “Incidents and Data Breaches”

3607 articles · page 9 of 181

Z.ai disables feature after repository uploads exposed

🛡️ Z.ai disabled components of its ZCode coding assistant after researchers discovered a default workflow that silently packaged and uploaded local code repositories to Alibaba Cloud without user consent. The company apologized, removed the feature in the v3.14.0 client, deleted associated cloud storage, and invited external security assessments. Z.ai also opened its codebase for review and asserted the data was not retained or used for model training.
read more →

Malicious npm package hides runtime payloads

🛡️ Checkmarx has identified a malicious npm package, indexed-btree, that concealed its payload inside application code rather than using lifecycle scripts, indicating attackers are adapting to npm's install-time protections. The package, first published on June 18, 2026, accumulated millions of downloads before removal and is estimated to have generated roughly €230,933.57 in cryptocurrency for the operator. The loader was embedded in a BTree.prototype.set() method and used EtherHiding and blockchain-hosted encrypted blobs to fetch staged payloads before cleaning up traces.
read more →

BigCommerce warns merchants of Ribon app breach

🔔 BigCommerce alerted merchants after attackers compromised credentials for third-party Ribon applications and injected malicious scripts into a subset of storefronts. The platform confirmed the compromise on September 17, removed the affected apps, and said its core systems were not breached. Affected merchants, including UK retailer Master of Malt, reported exposure of shopper names, emails, phone numbers, and shipping addresses.
read more →

North Korean 'Contagious Interview' Campaign Exposed

🛡️ A joint advisory attributes the long-running Contagious Interview campaign to North Korean-linked actors who have compromised at least 30,000 devices across 100+ countries and stolen from over 7,000 cryptocurrency wallets, totaling at least $10.71 million. The campaign targets developers and crypto specialists by posing as recruiters, using coding tests to deploy malware families like BeaverTail, InvisibleFerret, and RATatouille, then exfiltrating data and credentials. Agencies from Japan, the U.S., Australia, and Germany warn the activity is tied to clusters such as WaterPlum and PurpleDelta, and that the operation leverages laptop farms, enablers, and AI-crafted identities to recruit proxies and bypass sanctions.
read more →

OpenAI security gaps persist despite heavy investment

🔒 Two recent reports reveal security flaws in OpenAI systems that allowed researchers to chain vulnerabilities and bypass sandbox controls. One team leveraged an image library flaw to gain remote code execution and used stolen tokens to access employee accounts and internal repositories; fixes were applied after coordinated disclosure. Another group demonstrated Codex sandbox escapes that enabled the agent to act beyond intended limits; those issues were also patched within days.
read more →

Analysis of Flock ALPR Camera Reverse-Engineering

🔍 The recovered Flock camera software shows the device runs computer-vision that explicitly detects people, vehicles, license plates, bicycles, and even small graphics such as bumper stickers or patches. While the most sensitive ALPR storage remained encrypted, one unencrypted partition contained the encryption key for another partition, undermining the device's disk encryption. Logs indicate the camera captured more than a million images and can take dozens of frames of a single passing vehicle.
read more →

Exvicy ClickFix MaaS Reuses ErrTraffic Code

🛡️ A new ClickFix malware-as-a-service framework named Exvicy has been observed delivering malware via compromised WordPress sites by injecting obfuscated JavaScript and a fake Cloudflare Turnstile lure. Sekoia's Threat Detection & Research team linked Exvicy to active C2 infrastructure after telemetry showed customer hosts communicating with its servers. The actor advertises the service on Exploit.IN, with pricing rising from $1,200 to $2,000 per month and operational panels discovered through a screenshot in the advert. Sekoia assessed Exvicy reuses large portions of ErrTraffic's code, with the main technical difference being Exvicy's hardcoded C2 servers versus ErrTraffic's blockchain-based hiding.
read more →

NPM malware evades install-script defenses

🔒 Checkmarx researchers uncovered a campaign in which a malicious npm package, impersonating sorted-btree as “indexed-btree,” embeds malware inside a runtime method rather than using lifecycle install scripts. The payload launches a detached Node.js loader that fingerprints hosts and exfiltrates data to hardcoded Slack and Telegram endpoints, while using a Sepolia Ethereum smart contract as a resilient C2 pointer. Multiple related packages with high download counts were removed after discovery.
read more →

Weekly Cyber Recap: Active Exploits and AI Risks

🛡️ This week's recap highlights widespread, opportunistic threats affecting trusted software, plugins, and services, from active exploitation of a Cisco ISE auth bypass to novel AI agent supply-chain attacks. It covers high-impact incidents like domain seizures for DDoS services, credential-stealing browser extensions, and ClickFix social-engineering campaigns that weaponize legitimate cloud services. The briefing urges rapid patching, governance for AI agents, and runtime defenses to limit fast-moving attacks.
read more →

TASK#STOMP PowerShell Backdoor Steals Data

🛡️ Securonix researchers disclosed a campaign named TASK#STOMP that installs a PowerShell backdoor to harvest business documents, Wi‑Fi credentials, clipboard contents, screenshots and system metadata. The infection begins with an obfuscated VBScript executed via wscript.exe, which establishes multiple persistence mechanisms using Task Scheduler and the Startup folder while hiding and timestomping artifacts. Two hidden PowerShell modules, sys_loader.ps1 and win_conn.ps1, decode payloads and form redundant, token‑authenticated C2 channels that mutually monitor and restart each other. The attackers also open a URL in Chrome and run a cleanup batch script, and the operation relies heavily on native Windows components to evade detection.
read more →

Attackers Abuse npm Trusted Publishing in Supply Chain

🛡️ CloudSEK reported a supply chain attack where an attacker used a maintainer account to publish a malicious loader, GHAPPIER, in a legitimate npm package with valid provenance. The attacker altered workflows to auto-publish via GitHub Actions OIDC and Sigstore attestation, allowing a malicious release to pass npm audit signatures. The loader triggered a multi-stage chain ending in a ephemeral remote shell and was present briefly in version 0.2.21; CloudSEK found extensive reuse across repositories and recommends pinning and workflow monitoring.
read more →

ShinyHunters Claims Hack of Clop Ransomware Group

🛡️ The ShinyHunters gang claims to have breached the Clop ransomware group's dark web leak site, defacing it on 18 September and posting a message stating “THIS SITE HAS BEEN PWN3D BY SHINYHUNTERS”. They say they stole private keys, server data, activity logs and IP addresses that could identify Clop members, and left a ransom demand directing Clop to contact them. The incident appears to be part of a wider feud between the two groups dating to 2025 over claimed ownership of Oracle E-Business Suite exploits, including CVE-2025-61882.
read more →

Gyazo breach exposes massive image metadata trove

🔒 Security experts warned that a Gyazo breach disclosed on September 11 exposed nearly 24 million customer records and an additional 490 million image metadata entries after attackers exploited an upload-server vulnerability. The exposed metadata included image IDs, source IPs, user agents, EXIF location data, OCR-extracted text, titles, source URLs, and hashed passphrases, potentially allowing unauthorized access to images. Gyazo's developer, Helpfeel, said some image viewing was temporarily disabled while remediation occurred and urged password changes and vigilance against phishing.
read more →

Revolut customers targeted in post-breach smishing wave

📱Malwarebytes reports that Revolut customers have been targeted by smishing campaigns following a data breach acknowledged by the firm. Messages mimicked legitimate Revolut texts and urged recipients to follow links to confirm identity, with some pages requesting camera access to perform fake liveness checks. The campaign may leverage breached data and has reportedly targeted several hundred accounts, particularly high-net-worth crypto users.
read more →

Revoking Tokens May Not Evict Cloud‑Backdoor Actors

🔐 The author dissected GraphWorm, a OneDrive‑based backdoor used by the Webworm APT, and found revoking tokens often fails to remove access. The implant authenticates as an OAuth application with embedded credentials and polls a OneDrive folder for tasks, allowing operators to replace credentials remotely. Because the registration itself is durable and the implant identifies hosts by hardware fingerprints, simple token revocation or network changes do not reliably contain the threat. The piece recommends treating application registrations as primary targets for response and hunting in cloud identity telemetry.
read more →

ClickFix Lures Deploy ChainScript RAT via Decentralized C2

🛡️ Blackpoint APG researchers detail a campaign using ClickFix-style lures to deliver a new remote access trojan named ChainScript. The RAT, disguised under multiple build names and posing as legitimate apps like Spotify and Microsoft Teams, uses a Polygon smart contract for EtherHiding-style C2 discovery and communicates over WebSockets. ChainScript provides extensive remote capabilities including shell access, file ops, screenshots, wallet enumeration, and self-updating persistence via scheduled tasks and registry fallbacks.
read more →

Jade Sleet Compromises Indian IT Firm via DevOps Lure

🛡️ SentinelOne attributes a campaign by the North Korean-linked group Jade Sleet to the compromise of an India-based IT services provider, using macOS backdoors FLATROOF and ROOFDECK. The attackers employed job-interview and coding project lures with weaponized Terraform lock files to trick developers into fetching malicious modules. FLATROOF uses Telegram for C2 and data theft, while ROOFDECK leverages the Nostr protocol for decentralized C2 and persistent, signed command execution. The incident underscores the growing risk to developer endpoints and supply chain vectors.
read more →

BragJack: Malicious Extensions Hijack Browser AI

🔒 Security researcher Gal Weizman of Forever Security disclosed a proof-of-concept attack named BragJack that uses a single malicious Chromium extension to hijack built-in AI browser agents. The technique, demonstrated against Chrome Gemini Live, Perplexity Comet, Microsoft Edge, Opera Neon, and Claude for Chrome, exploits Chromium's declarativeNetRequest to intercept and modify trusted resources, enabling agents to access files, history, screenshots, and act on users' behalf. Vendors issued fixes and paid bug bounties, and the researcher published a full technical breakdown.
read more →

WaterPlum hackers infected 30,000 devices worldwide

🛡️ A joint advisory from Japanese, US, Australian, and German authorities warns that North Korean-affiliated group WaterPlum compromised at least 30,000 devices from December 2025 through July 2026 and transferred over $10.7 million in stolen cryptocurrency to North Korea. The group used malicious npm packages, fake interviews, and recruited remote IT workers to distribute malware and steal credentials, crypto keys, and sensitive data.
read more →

ShinyHunters breaches Clop leak site, claims keys

🔒 The ShinyHunters extortion group breached and defaced the Clop (Cl0p) ransomware gang's Tor data leak site after exploiting an alleged unauthenticated file upload flaw in Grav CMS. The attackers uploaded a taunting text file and replaced the site with ASCII art, claiming to have obtained server data, logs, source code, and the onion service's private keys. BleepingComputer confirmed the defacement and file upload but has not independently verified theft of logs or keys, while ShinyHunters says it will extort Clop within 72 hours.
read more →