Skip to main content

All Articles

Security Intelligence

2477 articles · Updated every 4 hours

Advertisement

SU
HIGH
Supply Chain

TeamPCP Jenkins Plugin Compromise and Mini Shai-Hulud Worm Analysis

TeamPCP escalates its supply chain campaign with a confirmed Jenkins plugin compromise and a self-spreading worm targeting the npm and PyPI ecosystems.

Runtime Rebel Intel
3 min read·May 18, 2026
Shai-Hulud Worm Code Leak: How Clones Threaten Developer Environments
HIGH
Malware

Shai-Hulud Worm Code Leak: How Clones Threaten Developer Environments

The release of Shai-Hulud worm source code triggers a surge in self-replicating clones, targeting software developers and automated CI/CD pipelines.

Runtime Rebel Intel
4 min read·May 18, 2026
SU
HIGH
Supply Chain

Shai-Hulud Infostealer Surfaces in Malicious npm Package Campaign

Leaked Shai-Hulud malware is targeting Node.js developers via malicious npm packages, exfiltrating sensitive data and credentials to Telegram-based C2.

Runtime Rebel Intel
4 min read·May 18, 2026
CL
MEDIUM
Cloud Security

Mitigating Shadow AI: Framework for Detecting Unauthorized AI Tools

Comprehensive guide for security professionals on identifying, assessing, and governing unsanctioned AI applications to prevent corporate data leakage.

Runtime Rebel Intel
4 min read·May 18, 2026
INTERPOL Operation Ramz: 201 Arrested in MENA Cybercrime Crackdown
MEDIUM
Threat Intel

INTERPOL Operation Ramz: 201 Arrested in MENA Cybercrime Crackdown

INTERPOL's Operation Ramz results in 201 arrests across 13 MENA countries, disrupting infrastructure used for phishing, BEC, and financial fraud schemes.

Runtime Rebel Intel
4 min read·May 18, 2026
Iranian Cyber Offensive Targets Critical Fuel Tank Gauge Systems
HIGH
Threat Intel

Iranian Cyber Offensive Targets Critical Fuel Tank Gauge Systems

Iranian threat actors are targeting insecure automatic tank gauges in fuel infrastructure, posing risks of physical disruption and environmental damage.

Runtime Rebel Intel
3 min read·May 18, 2026
SU
HIGH
Supply Chain

Grafana GitHub Token Compromise: Codebase Stolen via PAT

Grafana Labs reports a source code breach after attackers leveraged a stolen GitHub Personal Access Token. Analysis of the impact and mitigation steps.

Runtime Rebel Intel
3 min read·May 18, 2026
Reducing Phishing Exposure: Strategies for Rapid Evidence Recovery
MEDIUM
Threat Intel

Reducing Phishing Exposure: Strategies for Rapid Evidence Recovery

Learn how SOC teams can close the visibility gap in phishing detection and use evidence-based analysis to prevent business disruption after a click.

Runtime Rebel Intel
3 min read·May 18, 2026
Microsoft Exchange Zero-Day and npm Supply Chain Worm Under Active Use
CRITICAL
Threat Intel

Microsoft Exchange Zero-Day and npm Supply Chain Worm Under Active Use

Critical security briefing on the active exploitation of an Exchange Server zero-day, npm supply chain worms, and Cisco network control vulnerabilities.

Runtime Rebel Intel
3 min read·May 18, 2026
VU
HIGH
Vulnerabilities

YellowKey: Bypassing Windows 11 BitLocker TPM Protections

Technical analysis of YellowKey, a zero-day exploit bypassing Windows 11 BitLocker. Learn how physical access allows attackers to extract encryption keys.

Runtime Rebel Intel
4 min read·May 18, 2026
VU
CRITICAL
Vulnerabilities

CVE-2024-41662: Chaining OpenClaw Flaws for Sandbox Escape

CyberArk researchers uncover the Claw Chain in OpenClaw, allowing attackers to escape sandboxes, steal credentials, and deploy persistent backdoors.

Runtime Rebel Intel
3 min read·May 18, 2026
DA
HIGH
Data Breach

US Healthcare Data Breaches: Millions Impacted via Tracking Pixels

Millions of patient records were exposed in major healthcare breaches at Kaiser Permanente, City of Hope, and HealthEC due to tracking pixels and system access.

Runtime Rebel Intel
4 min read·May 18, 2026