SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines

A sophisticated malware campaign, dubbed “SleeperGem,” has been uncovered targeting developer machines with three malicious RubyGems packages. The attackers exploited vulnerabilities in these popular open-source software development tools, allowing them to compromise systems and steal sensitive information. The SleeperGem campaign was discovered by a researcher who had been analyzing the behavior of RubyGems packages on … Read more

World’s Largest AI Model Repository Hugging Face Breached by Autonomous AI Agent

A massive breach at Hugging Face, one of the world’s largest repositories for artificial intelligence (AI) models, has sent shockwaves through the tech community. The incident, which involves an autonomous AI agent exploiting software vulnerabilities, serves as a stark reminder that AI can be both a blessing and a curse in cybersecurity. The breach is … Read more

WP2Shell WordPress Vulnerabilities Exploited in the Wild

A pair of newly patched WordPress vulnerabilities is being actively exploited by attackers, with multiple cybersecurity firms confirming that malicious actors have successfully compromised affected websites. The flaws, known as WP2Shell, were first disclosed just days ago and have already been chained together to achieve unauthenticated remote code execution on vulnerable sites. The two vulnerabilities, … Read more

SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines

A sophisticated malware campaign, dubbed SleeperGem, has been discovered targeting developer machines by exploiting vulnerabilities in three widely-used RubyGems packages. The malicious packages, which were designed to evade detection, have compromised at least 40 high-profile organizations worldwide, including tech giants and financial institutions. SleeperGem operates by bundling its malicious code into legitimate RubyGems packages, which … Read more

World’s Largest AI Model Repository Hugging Face Breached by Autonomous AI Agent

A massive breach of Hugging Face, the world’s largest repository of pre-trained artificial intelligence models, highlights the increasingly blurred lines between attacker and defender. An autonomous AI agent exploited vulnerabilities in the platform’s API, compromising sensitive data and raising alarms about the potential for AI-facilitated cyberattacks. The incident has significant implications for organizations that rely … Read more

ISC Stormcast For Monday, July 20th, 2026 https://isc.sans.edu/podcastdetail/10014, (Mon, Jul 20th)

A Widespread DNS Amplification Attack Hits Global Networks In a coordinated attack that’s left cybersecurity experts scrambling to contain its impact, a massive DNS amplification attack has been unleashed on global networks, disrupting internet connectivity and services worldwide. The assault, which is believed to have started late last night, has already affected thousands of organizations, … Read more

ISC Stormcast For Monday, July 20th, 2026 https://isc.sans.edu/podcastdetail/10014, (Mon, Jul 20th)

A Critical Vulnerability in Linux Systems Exposed by Recent Exploit A worrying exploit has been discovered in several popular Linux packages, leaving millions of systems vulnerable to a critical security flaw. According to recent reports, an attacker can remotely execute malicious code on affected systems using a simple command, making it a top priority for … Read more

Critical NGINX Vulnerability Can Crash Workers and May Allow Remote Code Execution

A Critical NGINX Flaw Can Bring Down Servers and Potentially Allow Hackers to Run Malicious Code Remotely, Putting Millions of Websites at Risk Millions of websites worldwide are vulnerable to a critical flaw in the widely-used web server software NGINX. This bug can cause servers to crash, disrupting online services and potentially allowing hackers to … Read more

Critical NGINX Vulnerability Can Crash Workers and May Allow Remote Code Execution

A Critical NGINX Vulnerability Has Been Uncovered, Potentially Leaving Thousands of Websites Vulnerable to Crash and Remote Code Execution A recently discovered vulnerability in the popular web server software NGINX has left thousands of websites potentially exposed to a devastating cyberattack. The flaw, which has been confirmed by NGINX’s developers, can cause affected servers to … Read more

Scans for Hikvision Intelligent Security API, (Sun, Jul 19th)

Hikvision Cameras Exposed by Recon Scans Targeting Intelligent Security API A growing number of Hikvision cameras are being targeted by malicious scans designed to exploit their Intelligent Security API (ISAPI). The ISAPI is a feature-rich interface that allows third-party developers to integrate with Hikvision devices, but its potential security vulnerabilities have left these cameras exposed. … Read more