wenping wang

Archives
Log in
April 28, 2026

Security Daily Digest — 2026-04-28

Security Daily Digest
2026-04-28


FEATURED

Checkmarx GitHub Repository Data Leaked on Dark Web — The Hacker News

Checkmarx has confirmed a security breach where data from their GitHub repositories has been posted on the dark web following a cyberattack in March 2023. The breach is part of an ongoing investigation into a supply chain security incident, potentially affecting numerous projects relying on these repositories. Security teams should assess their dependencies on Checkmarx repositories and monitor for any signs of compromise or further exploitation.

ADT Data Breach Exposes 5.5 Million Customers' Information — BleepingComputer

Home security giant ADT has confirmed a data breach impacting 5.5 million individuals, with personal information stolen by the ShinyHunters extortion group. The breach includes sensitive data such as names, addresses, and email addresses. Security teams should advise affected users to be vigilant against phishing attempts and consider implementing additional security measures to protect personal information.

Medtronic Cybersecurity Breach Exposes 9 Million Records — BleepingComputer

Medtronic, a leading medical device company, has disclosed a cybersecurity breach where hackers accessed data from its IT systems, affecting approximately 9 million records. This breach raises concerns over the security of medical data and the potential for exploitation. Organizations in the healthcare sector should review their security protocols and ensure robust defenses against unauthorized access to sensitive data.


SIGNAL
  • PhantomCore Exploits TrueConf Vulnerabilities to Breach Russian Networks [The Hacker News]
  • GlassWorm malware attacks return via 73 OpenVSX "sleeper" extensions [BleepingComputer]
  • UNC6692 Combines Social Engineering, Malware, Cloud Abuse [Dark Reading]
  • Open source package with 1 million monthly downloads stole user credentials [Ars Technica Security]
  • PyPI package with 1.1M monthly downloads hacked to push infostealer [BleepingComputer]
  • Unpatched 'PhantomRPC' Flaw in Windows Enables Privilege Escalation [Dark Reading]


READ FULL DIGEST
news.security.thewang.net
Don't miss what's next. Subscribe to wenping wang:
Powered by Buttondown, the easiest way to start and grow your newsletter.