Daily Recap, Cyber threat research points to a rise in open-source and developer-supply-chain compromises across PyPI, npm, Docker, and GitHub Actions, while AI is being both leveraged by attackers and targeted in ongoing operations. Reports also flag active exploitation of SonicWall vulnerabilities in ransomware activity, N-able N-central server takeovers after an incomplete fix, and new backdoor tooling including AtlasRAT, OctLurk, SilkLurk, and GoGRPC in phishing and helpdesk-vishing campaigns. #PyPI #npm #Docker #GitHubActions #SonicWall #N-able #N-central #AtlasRAT #OctLurk #SilkLurk #GoGRPC #BTMOB #BrinksHome #WiFi #COLDCARD #Bitcoin
Supply Chain & AI
- Cyber threat research shows a surge in open-source and developer-supply-chain compromises across PyPI, npm, Docker, and GitHub Actions, while AI is increasingly both used by attackers and targeted in operations. – Weekly Recap, AI Threats
Ransomware & Exploits
- SonicWall vulnerabilities are being actively exploited in ransomware attacks, underscoring continued abuse of edge-device flaws to gain initial access. – SonicWall Exploits
- N-able said attackers were able to take over N-central servers after an initial fix proved incomplete, raising ongoing exposure for managed-service environments. – N-central Issue
Malware & Backdoors
- A weekly intelligence recap highlights new RAT and backdoor tooling, including AtlasRAT, OctLurk, SilkLurk, and GoGRPC-based payloads used in phishing and helpdesk-vishing campaigns. – Threat Recap
- Researchers unpacked the underground ecosystem behind BTMOB RAT on Android, detailing its distribution and criminal business model. – BTMOB RAT
Data Breaches & Leaks
- Brinks Home disclosed a data breach after hackers leaked files, adding to the wave of extortion-driven theft and public leak sites. – Brinks Breach
APT & State Activity
- A Russian state-linked APT was tied to recent hacking activity targeting public Wi‑Fi gateways, suggesting interest in infrastructure used by travelers and enterprise users. – Wi‑Fi APT
Crypto Theft
- A suspected COLDCARD wallet RNG flaw may be linked to an $88 million Bitcoin theft, highlighting how cryptographic implementation issues can have major financial impact. – Bitcoin Theft