TeamPCP Linked to Redis Attacks Dating Back to 2020 and Later Supply Chain Campaign
A new analysis by Oligo Security has uncovered that the threat actor known as TeamPCP has been active in the cybercrime scene…
A new analysis by Oligo Security has uncovered that the threat actor known as TeamPCP has been active in the cybercrime scene…
Researchers at Sysdig have linked a second attack on the same Langflow server to JADEPUFFER, the AI-agent-driven operator first documented earlier this…
A new Go-based botnet named NadMesh has been discovered actively hunting exposed AI services to steal cloud credentials and Kubernetes tokens. First…
Researchers at Nebula Security have disclosed GhostLock (CVE-2026-43499), a 15-year-old Linux kernel vulnerability that allows any logged-in user to gain full root…
Threat actors have been observed attempting to exploit a recently patched critical security flaw in Gitea Docker images, according to Sysdig. The…
A newly disclosed Linux kernel vulnerability, dubbed "Bad Epoll" and tracked as CVE-2026-46242, allows unprivileged local users to gain full root access…
Sysdig researchers discovered and analyzed the ENCFORGE ransomware campaign, linking it to the JADEPUFFER operator. Published technical details including binary hashes, C2…
A new Linux kernel privilege escalation vulnerability, tracked as CVE-2026-43503 and nicknamed DirtyClone, has been publicly disclosed with a working exploit. Discovered…