RC RANDOM CHAOS

The Wire

Curated cybersecurity and tech news — AI-summarized, source attributed.

aicybersecurity

AI Agent Memory Is the New Attack Surface — and It's Barely Defended

Persistent memory is what makes modern AI agents useful across sessions, but it is also what makes them durably exploitable. An attacker who plants a poisoned i

via Dark Reading ·
cybersecurityai

AI-Generated Phishing Tops Attacker Toolkits as Defenders Scramble

Phishing remains the dominant intrusion vector, but generative AI has sharpened its edge. Attackers now produce grammatically flawless, context-aware lures at s

via Dark Reading ·
supply-chainmalware

Bitwarden CLI npm package hijacked in Checkmarx-linked supply chain attack

A malicious version 2026.4.0 of the @bitwarden/cli npm package sat in the registry for roughly 90 minutes on April 22 before being pulled. The tampered package

via BleepingComputer ·
supply-chaincybersecurity

Bitwarden CLI Pulled Into Ongoing npm Supply Chain Campaign Tracked by Checkmarx

A malicious package impersonating the Bitwarden command-line client has surfaced as the latest artifact in a supply chain campaign that Checkmarx researchers ha

via The Hacker News ·
cybersecurityidentity

BlackFile extortion crew uses vishing to plunder Salesforce and SharePoint data

A financially motivated group calling itself BlackFile — also tracked as CL-CRI-1116, UNC6671, and Cordial Spider — has been hitting retail and hospitality targ

via BleepingComputer ·
vulnerabilitycybersecurity

Breeze Cache WordPress plugin under active attack via unauth file upload flaw

CVE-2026-3844, a critical 9.8-severity flaw in the Cloudways Breeze Cache plugin, is being actively exploited, with Wordfence logging over 170 attack attempts.

via BleepingComputer ·
supply-chaincybersecurity

Checkmarx KICS supply chain hit: Docker images and VSCode extensions weaponized

Attackers pushed trojanized versions of Checkmarx's KICS scanner to Docker Hub and compromised the associated VS Code and Open VSX extensions, turning a securit

via BleepingComputer ·
cybersecuritymalware

China-Backed Botnet Operations Shift From Artisanal to Industrial Scale

Dark Reading reports that state-aligned Chinese threat actors have moved botnet construction out of bespoke, campaign-specific work and into something closer to

via Dark Reading ·
cybersecuritycloud

Chinese APT Weaponizes Legitimate Cloud Services for Mongolia Espionage Campaign

A Chinese advanced persistent threat group is running a surveillance operation against Mongolian targets by piggybacking on trusted cloud infrastructure rather

via Dark Reading ·
cybersecuritysupply-chain

Chinese phishing campaign tricks NASA staff to reach U.S. defense software

A targeted phishing operation attributed to Chinese actors successfully compromised NASA employees as part of a broader effort to access U.S. defense software.

via The Hacker News ·
cybersecuritypolicy

DOJ Dismantles Myanmar-Based Fraud Ring Preying on American Victims

US authorities have disrupted a Myanmar-based criminal operation that targeted American citizens through financial fraud schemes. The takedown reflects the grow

via Dark Reading ·
cybersecuritypolicy

DORA Article 9 turns credential hygiene into a binding EU financial control

The Digital Operational Resilience Act, in force across the EU since January 2025, recasts credential management as a supervised financial risk control rather t

via BleepingComputer ·