GLossary

More

News

More
Tensorlake npm Package Compromised

Tensorlake npm Package Compromised: Anatomy of the Shai-Hulud Worm, Hostage Token Wipe-Switch, and AI Supply Chain Attacks

The CyberSec Guru

Tensorlake npm package 0.5.144 was compromised with the Shai-Hulud worm. Learn how it steals credentials, targets AI tools, evades EDR, and wipes hosts

Rakuten Drive Breach

Rakuten Drive Breach: Stolen Admin Credentials Exposed 15,382 Users’ Files for Eight Months as Separate 101 Million Record Sale Claim Surfaces

The CyberSec Guru

Rakuten Drive suffered an eight-month data breach exposing files from 15,382 users after attackers stole admin credentials. Here’s what happened

Double Counter Data Breach

Double Counter Breach: How a Forgotten Metabase Server Exposed 28 Million Discord Users and Hijacked a Trusted Bot

The CyberSec Guru

The Double Counter data breach exposed data linked to 28 million Discord users after attackers compromised a legacy Metabase server and stole cloud credentials

EY Data Breach 2026: Goldman Sachs & Man Group Client Data Exposed

EY Data Breach Exposes Goldman Sachs and Man Group Client Tax Records: Full Technical Analysis of the Checkmarx-Linked Supply Chain Attack

The CyberSec Guru

EY’s 2026 data breach exposed Goldman Sachs and Man Group client tax records. Here’s what happened, the Checkmarx link, timeline, data exposed, and risks

ASOS Data Breach

ASOS hit by extortion hack: push notifications hijacked and Snowflake instance allegedly compromised

The CyberSec Guru

ASOS data breach 2026 explained: XuanyeGroup hijacked push notifications and allegedly accessed customer data through third-party MarTech systems

Advisory

More
AnyDesk Hacked

Remote Desktop Software AnyDesk Hacked, Users Urged to Change Passwords

AnyDesk hacked: Cyberattack compromises production systems, raising concerns over source code security and user data. Immediate actions taken, passwords revoked, and new security measures implemented

Jenkins Security Alert Critical Vulnerability Exposes Servers to Remote Code Execution (RCE) Attacks

Jenkins Security Alert: Critical Vulnerability Exposes Servers to Remote Code Execution (RCE) Attacks

Jenkins Security Alert: Critical vulnerability poses remote code execution risk. Servers exposed. Immediate action required to patch and safeguard systems against potential exploitation. Stay vigilant