LiteLLM Supply Chain Attack Hit More Than 2,500 Companies
A supply chain attack on LiteLLM via compromised PyPI packages hit more than 2,500 companies and 434,000 build pipelines, even though the packages were online …
News, guides and insights on hosting, security and IT.
A supply chain attack on LiteLLM via compromised PyPI packages hit more than 2,500 companies and 434,000 build pipelines, even though the packages were online …
One crafted HTTP request is enough to reboot Cisco ASA and FTD devices. The flaw is under active exploitation and sits in CISA's KEV catalogue.
One day after a proof-of-concept went public, attackers hit honeypots. CVE-2026-55040 bypasses authentication in SharePoint entirely.
A critical flaw in the vCenter Syslog Server is under active exploitation. Of 361 compromised instances, 55 sit in Germany.
Freely downloadable skills, manipulated MCP servers and stolen session tokens: AI agents bring new entry points when security arrives after the fact.
Multiple vulnerabilities in WordPress let attackers inject scripts, escalate privileges and bypass security controls.
A fine against Character.AI, doubts about US data transfers, two ECJ rulings and a reform package: European data protection is moving on several fronts.
Apple has patched a macOS screen sharing flaw that let attackers on the network log in without valid credentials.
Ransomware attackers now deliberately destroy backups before encrypting. How the cyber kill chain works and how to make your data protection resilient.