Resumen
MEDIUM BleepingComputer
2026-09-20

Malicious npm packages evade install-script defenses at runtime

An ongoing npm malware campaign involving the 'indexed-btree' package shows how threat actors bypass supply chain defenses by hiding malicious code in a package's normal…

LOW BleepingComputer
2026-09-20

Researchers escape OpenAI Codex sandbox to run commands on host

Researchers escaped OpenAI's Codex sandbox two ways, one running commands on a developer's machine from its most locked-down mode. OpenAI has patched both. [...]

LOW BleepingComputer
2026-09-19

BragJack attacks hijack AI browser agents through malicious extensions

BragJack, a proof-of-concept attack from Forever Security's Gal Weizman, hijacks the AI assistants in Chrome, Edge, Opera Neon, Perplexity Comet, and Claude in Chrome us…

LOW BleepingComputer
2026-09-19

North Korean WaterPlum hackers infected 30,000 devices worldwide

A joint law enforcement advisory warns that the North Korean hacking group WaterPlum compromised at least 30,000 devices worldwide from December 2025 through July 2026 a…

Thought Leadership

Klik en je bent de sjaak

We klikken allemaal. Op mails van onze bank, een berichtje van WhatsApp-support, een aanbieding op Facebook of een betaalverzoek via Marktplaats. Vaak gaat het goed, maar een verkeerde klik kan je duizenden euro's kosten. In Klik en je bent de sjaak neemt Erik Westhovens je mee…

Klik en je bent de sjaak
Ver libro

Biblioteca de informes CTI

Analisis profundos, perfiles de amenaza e informes sectoriales.

Ver todos los informes CTI
Informes destacados
CTI CRPx0 ransomware
Nuevo

CTI CRPx0 ransomware

2026-07-27 Informe CTI

Verfijnde threat intelligence-publicatie met context, observaties en duiding voor teams die gericht en met rust willen…

Leer informe
Miasma CTI-report
Nuevo

Miasma CTI-report

2026-06-07 Informe CTI

Miasma is a fast-moving software supply-chain worm targeting npm packages, CI/CD pipelines, developer environments, and…

Leer informe
Typhoon2FA device code phishing
Actualizacion

Typhoon2FA device code phishing

2026-05-18 Informe CTI

Tycoon2FA device-code phishing represents a shift in how attackers target Microsoft 365 environments. Instead of relyin…

Leer informe
Generic malware Detectie
Nuevo

Generic malware Detectie

2026-05-18 Informe CTI

Binnen Amuneth Watch zien we dagelijks een groot aantal malware-alerts met namen als Wacatac, Bearfoos, TurtleLoader en…

Leer informe
Informes recientes de la biblioteca
Titulo Tipo Fecha de publicacion Etiquetas
How malware next gen hijackes M365 Caso 2026-05-14 Caso
Why Autonomous Agent Actions, Production Permissions, and Corporate Connectivity Create Material Operational and Governance Risk Caso 2026-05-11 Caso
Shiny hunters: How Identity Compromise, Social Engineering, and Connected-App Abuse Are Reshaping SaaS Extortion Informe CTI 2026-05-11 Informe CTI
The Gentlemen Ransomware groep Informe CTI 2026-05-11 Informe CTI
CTI Claude Mythos and ChatGPT Cyber-Report Informe CTI 2026-05-11 Informe CTI