Cyber Signal
A daily cut from public sources. You don't subscribe to it. It just gets published.
No account. No email address. No tracking.
A daily cut from public sources. You don't subscribe to it. It just gets published.
No account. No email address. No tracking.
items report exploitation — not proof of concept
items the reader pulled in the last 30 hours
The digest hands us counts, not the discarded items — so this shows how many and why, not which.
July brought 4,084 new advisories for malicious npm packages. Other months run around 731 — July is a spike, not a trend.
All 8,097 of them, across seven months, are rated critical. Not one carries a computed CVSS score — there is nothing to score in a malicious package. It is not a flaw in the code, it is intent. Triage them by severity and every one is a tie.
And a package can sit deeper than it looks. seroval has 2 direct dependents — through the dependency tree it reaches 1,859 projects. Most packages do not grow like that (median 1.5×), but 13% of them multiply their reach thirtyfold or more.
Dependencies: a deps.dev v3alpha dependentCount measurement, SINGLE provider, no cross-check, window 2026-07. And advisories capture a fraction of malicious packages — this is the advisory denominator, not the malware denominator.
Seven complete collection days, 84 items. Read one at a time, these were separate incidents. Read in order, they are one movement — and it is not the movement most coverage described.
At the start of the period the subject of every story is the model — what it did, whether it can be trusted. By the end of the period the subject is the pipeline: untrusted input arriving at privilege, with the agent as the path rather than the actor. That is not an escalation of the same problem. It is a different problem wearing the same headline.
The tag is applied by our own classifier, so the 42% describes what this instrument sees, not a measurement of the world. Attention thresholds were recalibrated on 6 August 2026, so numeric scores are not comparable across the full period — which is why none appear above. The arc rests on what happened, not on what it scored.
Week 1 of a daily record. Every day has its own page and nothing is overwritten.
Attention classes are how much attention we gave an item. They are not severity verdicts.
Advisory at a Glance Title #StopRansomware: Gunra Ransomware Original Publication August 10, 2026 Executive Summary Gunra is…
CISA has confirmed that ransomware gangs have begun exploiting two recently patched SonicWall SMA1000 vulnerabilities,…
AI is making phishing, credential theft, and social engineering faster and more efficient, while traditional trust signals…
Three separate research efforts last week demonstrated ways to defeat passkey protections without breaking the cryptography…
Cybersecurity researchers have flagged a malicious Microsoft Visual Studio Code (VS Code) extension named Solidity Pro…
A lot of security problems still begin with someone doing a completely normal thing. Cloning a repo. Answering a call.…
The security defect allows unauthenticated, remote attackers to gain administrative access to Metabase instances.
North Korea's state hackers are no longer content to type prompts into public chatbots.
The maximum-severity vulnerability, which still has no CVE, allows malicious, remote administrator access to the…
New research shows how attackers can use security alerts and blocked events to manipulate and hijack AI agents.
OpenAI has announced that it's pausing some "internal activities" involving its upcoming artificial intelligence (AI) model…
Hackers linked to Iran targeted industrial control systems (ICS) at water facilities in at least a dozen US states.