IAM / Zero Trust

Rust-Written IronWorm Hits NPM Supply Chain IAM / ZERO TRUST

Rust-Written IronWorm Hits NPM Supply Chain

Like Shai-Hulud, the campaign targets developers to steal credentials and reuses them to propagate across the software supply channel....

05. Juni 2026 Keine Kommentare
Police dismantles fake ID marketplace used by migrant smugglers IAM / ZERO TRUST

Police dismantles fake ID marketplace used by migrant smugglers

French and Spanish authorities took down an online marketplace selling fake identity documents to migrant smuggling rings operating within the...

05. Juni 2026 Keine Kommentare
Chinese Threat Actors Ditch Static Phishing Pages for Live Credential Interception IAM / ZERO TRUST

Chinese Threat Actors Ditch Static Phishing Pages for Live Credential Interception

Almost all organizations impersonated by Chinese phishing platforms are non-Chinese entities, suggesting operators deliberately avoid domestic targets...

04. Juni 2026 Keine Kommentare
Shrinking the IAM Attack Surface through Identity Visibility and Intelligence Platforms (IVIP) IAM / ZERO TRUST

Shrinking the IAM Attack Surface through Identity Visibility and Intelligence Platforms (IVIP)

The Fragmented State of Modern Enterprise Identity Enterprise IAM is approaching a breaking point. As organizations scale, identity becomes increasingly...

04. Juni 2026 Keine Kommentare
Supply Chain Attack Hits 32 Red Hat NPM Packages IAM / ZERO TRUST

Supply Chain Attack Hits 32 Red Hat NPM Packages

Hackers published 96 malicious package versions, injected with a credential-stealing worm similar to Mini Shai-Hulud. The post Supply Chain Attack...

03. Juni 2026 Keine Kommentare
CISA Exposes Secrets, Credentials in ‚Private‘ Repo IAM / ZERO TRUST

CISA Exposes Secrets, Credentials in ‚Private‘ Repo

The agency's GitHub repository, publicly available since November 2025, was ironically named "Private-CISA."...

03. Juni 2026 Keine Kommentare
China-Aligned Groups Ramp Up Attacks: Dragon Weave Hits Czech Republic & Taiwan IAM / ZERO TRUST

China-Aligned Groups Ramp Up Attacks: Dragon Weave Hits Czech Republic & Taiwan

A new cyber espionage campaign codenamed Operation Dragon Weave has been observed targeting officials and citizens in the Czech Republic...

02. Juni 2026 Keine Kommentare
Dashlane Discloses Brute-Force Attack, Encrypted Vaults of Fewer Than 20 Users Downloaded IAM / ZERO TRUST

Dashlane Discloses Brute-Force Attack, Encrypted Vaults of Fewer Than 20 Users Downloaded

Password manager Dashlane has disclosed that "fewer than" 20 users on the personal subscription plan had their encrypted vaults downloaded...

02. Juni 2026 Keine Kommentare
Thousands of Fake FIFA Domains Target World Cup Fans IAM / ZERO TRUST

Thousands of Fake FIFA Domains Target World Cup Fans

Group-IB uncovered Ghost Stadium phishing and 4300 fake FIFA World Cup domains targeting fans...

01. Juni 2026 Keine Kommentare
CISA Exposes Secrets, Credentials in ‚Private‘ Repo IAM / ZERO TRUST

CISA Exposes Secrets, Credentials in ‚Private‘ Repo

The agency's GitHub repository, publicly available since November 2025, was ironically named "Private-CISA."...

01. Juni 2026 Keine Kommentare