appsecThreats

Threat Intel Feed

·|
PyPI Fixes High-Severity Access Control Issues Found in Security Audit
Incident start — not yet confirmed
Published May 1, 2026, 09:05 PM GMT+0First seen May 2, 2026, 04:15 AM GMT+0
Socket.dev
Copy.Fail: Universal Linux Local Privilege Escalation Vulnerability
Incident start — not yet confirmed
Published May 1, 2026, 12:38 PM GMT+0First seen May 1, 2026, 01:00 PM GMT+0
Wiz Blog
Mini Shai-Hulud Spreads to Packagist: Malicious Intercom PHP Package Follows npm Compromise
Incident start — not yet confirmed
Published Apr 30, 2026, 09:31 PM GMT+0First seen Apr 30, 2026, 10:15 PM GMT+0
Socket.dev
Intercom’s npm Package Compromised in Ongoing Mini Shai-Hulud Worm Attack
Incident start — not yet confirmed
Published Apr 30, 2026, 03:42 PM GMT+0First seen Apr 30, 2026, 05:15 PM GMT+0
Socket.dev
lightning PyPI Package Compromised in Supply Chain Attack
Incident start — not yet confirmed
Published Apr 30, 2026, 01:36 PM GMT+0First seen Apr 30, 2026, 02:15 PM GMT+0
Socket.dev
Official SAP npm packages compromised to steal credentials
Incident start — not yet confirmed
Published Apr 29, 2026, 10:43 PM GMT+0First seen Apr 29, 2026, 10:45 PM GMT+0
Bleeping Computer
Malicious npm Package Brand-Squats TanStack to Exfiltrate Environment Variables
Incident start — not yet confirmed
Published Apr 29, 2026, 07:54 PM GMT+0First seen Apr 29, 2026, 09:15 PM GMT+0
Socket.dev
A Mini Shai-Hulud has Appeared: Obfuscated Bun Runtime Payloads Hit SAP-Related npm Packages
Incident start — not yet confirmed
Published Apr 29, 2026, 12:13 PM GMT+0First seen Apr 29, 2026, 12:15 PM GMT+0
StepSecurity
Hackers are exploiting a critical LiteLLM pre-auth SQLi flaw
Incident start — not yet confirmed
Published Apr 28, 2026, 09:07 PM GMT+0First seen Apr 28, 2026, 09:15 PM GMT+0
Bleeping Computer
Researchers Discover Critical GitHub CVE-2026-3854 RCE Flaw Exploitable via Single Git Push
Incident start — not yet confirmed
Published Apr 28, 2026, 06:19 PM GMT+0First seen Apr 28, 2026, 07:15 PM GMT+0
The Hacker News
elementary-data Compromised on PyPI and GHCR: Forged Release Pushed via GitHub Actions Script Injection
Incident start — not yet confirmed
Published Apr 25, 2026, 08:55 AM GMT+0First seen Apr 25, 2026, 09:00 AM GMT+0
StepSecurity
Bitwarden CLI Compromised in Ongoing Checkmarx Supply Chain Campaign
Incident start — not yet confirmed
Published Apr 23, 2026, 01:07 PM GMT+0First seen Apr 23, 2026, 02:00 PM GMT+0
Socket.dev
Malicious Checkmarx Artifacts Found in Official KICS Docker Repository and Code Extensions
Incident start — not yet confirmed
Published Apr 22, 2026, 04:00 PM GMT+0First seen Apr 22, 2026, 04:45 PM GMT+0
Socket.dev
Namastex.ai npm Packages Hit with TeamPCP-Style CanisterWorm Malware
Incident start — not yet confirmed
Published Apr 22, 2026, 12:18 AM GMT+0First seen Apr 22, 2026, 01:15 AM GMT+0
Socket.dev