Espresso
  • Home
  • AI
  • Aviation
  • Career
  • Cybersecurity
  • HPC
  • Politics
  • Startups
Sign in Subscribe

npm

Jack of all trades: Shai‑Hulud malware steals secrets, AIPAC data breach uncovered

Jack of all trades: Shai‑Hulud malware steals secrets, AIPAC data breach uncovered

TL;DR * Shai‑Hulud malware trojanizes npm packages, compromising over 27,000 GitHub repositories and exfiltrating developer secrets. * AIPAC data breach exposes sensitive personal information, sparking ongoing investigation. * Iberia airlines data leak reveals 77 GB of internal data, costing approximately €150,000. Shai‑Hulud’s NPM Onslaught: A Wake‑Up
Barista @ Cafecito 25 Nov 2025
Exploit Window Shrinks to 5 Days

Exploit Window Shrinks to 5 Days

Accelerated Exploit Timelines and Patch Management Strain The average interval between vulnerability disclosure and confirmed exploitation for high‑severity CVEs has contracted from 63 days in 2019 to approximately 5 days in 2024‑25. The share of exploited CVEs that are zero‑days rose from 30 % to 70 %, and the
Soumit Salman Rahman 15 Oct 2025

Subscribe to Espresso

Don't miss out on the random crap we pump out.
  • Sign up
  • Cafecito
  • About
  • Beans
  • RSS
Espresso © 2025. Powered by Ghost