Grafana GitHub Breach Exposes Source Code via TanStack npm Attack
Breach impact was limited to Grafana Labs GitHub repositories, with no evidence of customer production systems or Grafana Cloud operations being compromised.
Grafana GitHub Token Breach Led to Codebase Download and Extortion Attempt
An unauthorized party accessed Grafana’s GitHub environment via a stolen token, downloaded code, attempted extortion, and Grafana invalidated credentials and added security measures.
From Ransomware to Residency: Inside the Rise of the Digital Parasite
Attackers are shifting from disruptive ransomware encryption toward long-term, stealthy access that prioritizes credential theft, persistence, and quiet data exfiltration.
Foxconn Ransomware Attack Shows Nothing Is Safe Forever
Nitrogen claims it stole 8 TB of Foxconn data and extorts the electronics manufacturer, which reported cyberattacks and resuming production at affected North American factories.
A Cybercrime Merger Like No Other - Scattered Spider, LAPSUS$, and ShinyHunters Join Forces
Three cybercrime groups formed Scattered LAPSUS$ Hunters, creating and repeatedly rebuilding at least sixteen Telegram channels to run coordinated data extortion and EaaS operations.
Crims laud Claude, use Anthropic's AI to plant ransomware
AI tools increasingly enable cybercrime and remote-worker fraud, and reactive defenses like account bans are largely ineffective against adaptive attackers.
Anthropic Disrupts AI-Powered Cyberattacks Automating Theft and Extortion Across Critical Sectors
An actor weaponized Anthropic's Claude and Claude Code to automate large-scale data theft and extortion across at least 17 organizations, demanding ransoms over $500,000.