Four separate items this fortnight describe the same intrusion: somebody got into the thing that ships you software. Trojanised LiteLLM packages on PyPI swept cloud keys, SSH keys and Kubernetes secrets from more than 2,500 organisations into a 195TB collection; the MonsterInsights Pro update bucket was poisoned in both the current release and the build the vendor rolled back to, with the attacker still holding write access; Supsystic's update server shipped credential stealing builds days later; and the malicious commits in use-context-selector were force-pushed away rather than reverted, so every fork and SHA pin from that window still runs the dropper. The operational reading is unpleasant. A version number is not evidence, and the obvious remediation can reinstall the problem.
Where something was exploited rather than delivered, it sat at the edge of the network, and the gap between disclosure and exploitation kept collapsing. Cisco's ASA and FTD VPN flaw entered KEV the day the advisory shipped, Metabase's pre-auth SQL injection to admin was exploited before it had a CVE, vCenter exploitation began five days after Broadcom's patch and produced 361 victim IPs across 47 countries, SharePoint became an incident again the week Rapid7 published a proof of concept, and Sansec was blocking Adobe Commerce attempts while Adobe's own advisory said there was no evidence of abuse. EPSS was low and wrong in every one of those cases. watchTowr's NetScaler pre-auth writeup is the one to watch, precisely because nothing has happened with it yet.
The rest was credentials. Stolen logins produced Entra directory exports from McDonald's, Vodafone and seven other large enterprises with no product flaw involved; one OAuth token between Salesforce and a marketing vendor reached Recorded Future's tenant; stolen GitHub PATs drove mass repository cloning across several organisations; and France's tax authority lost data on roughly 678,000 people to a misused identity, which now has Paris prosecutors and a prime ministerial crisis meeting attached. Tenable's agentic AI cluster arrives at the same place from the other direction: seven incidents, every one starting at exposed identity rather than clever agent capability. Against that backdrop, the White House memorandum letting vetted private firms run offensive operations against foreign criminal groups is the story that will reach your general counsel well before it reaches your SOC.
Deep Shankar Yadav
40 stories, drawn from
14 daily editions
(1589 items in the window).