// 1 ZERO-DAY · 2 CVE · 3 EXPLOIT IN THE LAST 24H
cybersecEXPLOIT

SAP npm Supply Chain Attack: Malware Targets CAP Packages

The Mini Shai-Hulud campaign compromises SAP npm packages, stealing credentials and establishing persistence via AI agents. Learn how…

Apr 29, 2026views - 36

CYBERSEC

NPM Supply Chain Attack: Malware Found in Claude Code and VS Code Extensions

A new SAP npm package supply chain attack targets AI coding agent configurations. Discover how mini Shai-Hulud steals credentials and…

Apr 29, 2026views - 2.3k

CYBERSEC

Vercel Breach: The Risks of Shadow AI OAuth Exposed

The Vercel breach highlights the danger of Shadow AI integrations: how a forgotten OAuth token opened corporate doors. Here is what yo…

Apr 29, 2026views - 67

CYBERSECCRITICAL

Critical cPanel Vulnerability: Urgent Patch and Hosting Access Blocks

A critical cPanel authentication vulnerability forced providers to block access. Learn about the security risks and the importance of…

Apr 29, 2026views - 46

CYBERSEC

Entra ID Vulnerability: Patch for Agent ID Privilege Escalation

Microsoft fixed a vulnerability in Entra ID's Agent ID Administrator role. The bug allowed high-privilege service principal takeover.…

Apr 28, 2026views - 31