May 19, 2026 A newly discovered malware called VoidStealer has emerged as a serious threat to Chrome users on Windows, using a clever technique to bypass one of the browser’s …
Nx Console VS Code Extension Compromised to Steal Developer and Cloud Secrets
May 19, 2026 A widely used Visual Studio Code extension was quietly turned into a credential-stealing tool in May 2026, putting millions of developers at serious risk without warning. The …
Microsoft to Retire Teams Together Mode to Enhance Performance Improvements
May 19, 2026 Microsoft has announced the retirement of its “Together Mode” feature in Microsoft Teams, marking a strategic shift toward performance optimization and simplified meeting experiences. The change will …
Hackers Compromise @antv Packages in Mini Shai-Hulud npm Attack Wave
May 19, 2026 A sweeping supply chain attack has hit the npm ecosystem, compromising hundreds of widely used JavaScript packages tied to the @antv data visualization library. The attack, which …
CISA Admin Exposes AWS GovCloud Credentials on Public GitHub Repository
May 19, 2026 A major security lapse has exposed highly sensitive U.S. government cloud credentials after a contractor working with the Cybersecurity and Infrastructure Security Agency (CISA) accidentally published them …
Hackers Abuse Microsoft Entra ID Accounts to Exfiltrate Microsoft 365 and Azure Data
May 19, 2026 A compromised version of the widely used Nx Console VS Code extension was published to the Visual Studio Code Marketplace on May 18, 2026, silently targeting developer …
Mythos Preview Builds PoC Exploits in Automated Vulnerability Research
May 19, 2026 Anthropic’s Mythos Preview security-focused AI model is crossing a critical threshold in automated vulnerability research, not just finding bugs, but chaining them together into working proof-of-concept exploits. …
CISA Admin Leaked AWS GovCloud Keys on Github
Until this past weekend, a contractor for the Cybersecurity & Infrastructure Security Agency (CISA) maintained a public GitHub repository that exposed credentials to several highly privileged AWS GovCloud accounts and …
Hackers Actively Exploiting Critical NGINX RCE Vulnerability in the Wild
May 18, 2026 Hackers are wasting no time exploiting a newly disclosed critical vulnerability in NGINX, with security researchers already observing real-world attacks just days after its public release. Security …
Critical n8n Vulnerabilities Expose Automation Nodes to Full RCE
May 18, 2026 A fresh set of critical vulnerabilities in the popular workflow automation platform n8n is raising serious security concerns, as researchers warn that attackers could chain multiple flaws …

