Cybersecurity news from across the internet
Cybersecurity news from across the internet

By default, npm install will no longer execute scripts from dependencies, unless explicitly allowed. The post NPM 12 Will Change Script Execution Behavior to Prevent Supply Chain Attacks appeared first on SecurityWeek.

Ukrainian national Oleksii Lytvynenko has pleaded guilty in the US to wire fraud conspiracy linked to Conti ransomware, which hit more than 1,000 victims and generated at least $150 million in ransom payments.





Tracing Digital Intent: New MacOS Tahoe 26 Artifact Discovered
Why Use App-Level Auth When Every Database Has Auth? (Splunk Enterprise CVE-2026-20253 Pre-Auth RCE)
Marking Your Own Homework (Check Point Remote Access VPN IKEv1 Authentication Bypass CVE-2026-50751)
ShinyHunters Targets Education Sector with Oracle PeopleSoft Exploit
CISA Adds One Known Exploited Vulnerability to Catalog
A Vulnerability in Oracle PeopleSoft PeopleTools Could Allow for Remote Code Execution
CISA Adds One Known Exploited Vulnerability to Catalog
CISA Issues New Directive Improving How Federal Agencies Prioritize the Mitigation of Cyber Vulnerabilities