The campaign, active since February 2026, involves collecting credential lists, searching for exposed services, brute-forcing accessible systems, and deploying bespoke
Category Added in a WPeMatico Campaign
Fake AI Agent Skill Passed Security Scans and Reportedly Reached 26,000 Agents
Every skill security scanner the firm tested it against marked it safe. The payload was harmless by design: it collected the user’s email address and did nothing else.
The point was to show
Trump Order Sets 2030 Deadline for Federal Post-Quantum Crypto Migration
Key establishment must move by December 31, 2030; digital signatures by December 31, 2031. EO 14409 leaves national security systems on a separate track.
The deadlines matter because of a threat that does not
GitHub Updates actions/checkout to Block Common Pwn Request Attack Patterns
Effective June 18, 2026, the latest version of “actions/checkout,” the official GitHub action for checking out a repository into the
Agentic AI: The Weapon That No Longer Needs a Warrior
Malicious npm Packages Pose as PostCSS Tools to Deliver Windows RAT
The list of identified packages, is below –
aes-decode-runner-pro (145 downloads)
postcss-minify-selector (256 downloads)
postcss-minify-selector-parser (615 downloads)
All the packages were published over the past month by an npm user named
WhatsApp VBScript Campaign Uses Fake Documents to Install ManageEngine RMM Tool
Per findings from Kaspersky, the active campaign is targeting users of WhatsApp Desktop and WhatsApp Web across Malaysia, Brazil, India, Mexico, Singapore, the U.K., Spain, Taiwan, Australia,
OpenAI Expands Daybreak With GPT-5.5-Cyber to Help Defenders Patch Security Flaws
Calling GPT‑5.5‑Cyber its “strongest model yet for finding and helping patch software vulnerabilities,” OpenAI said the model can “sustain deeper analysis across large codebases” to identify
ShapedPlugin WordPress Pro Plugins Backdoored in Supply Chain Attack
“Attackers compromised the vendor’s build and distribution pipeline, injecting backdoor code into Pro plugin releases distributed through official licensed update channels,” Wordfence said in an analysis
Researchers Detail DifyTap Flaws in Dify That Could Expose AI Chats Across Tenants
The vulnerabilities have been collectively codenamed DifyTap by Zafran Security.
