Latest News

Threats

Bitwarden CLI NPM Package Poisoned in Sophisticated Supply Chain Attack

Version 2026.4.0 of the Bitwarden CLI NPM package was found to contain malicious code capable of stealing credentials and secrets from victim machines, with links to recent attacks on Checkmarx and the Shai-Hulud worm campaigns.

Vulnerabilities

More Than 10,000 Zimbra Servers Remain Unpatched Amid Active XSS Exploitation

Over 10,500 Zimbra Collaboration Suite servers exposed to the internet are still unpatched against CVE-2025-48700, an actively exploited cross-site scripting flaw. CISA has added the vulnerability to its Known Exploited Vulnerabilities catalog and ordered federal agencies to patch within three days.

← Prev 1 9596979899 111 Next →