πŸ” Search
Sign in to post
Attackers Breached JetBrains Cadence via Unpatched TeamCity, Extracting AWS Credentialshttps://thehackernews.com/2026/09/attackers-breached-jetbrains-cadence.html

JetBrains is urging Cadence users to revoke and rotate all credentials following a security incident last month in which unidentified threat actors exploited a recently disclosed critical vulnerability in TeamCity to breach its own environment. "Cadence users should immediately revoke or rotate all credentials and secrets that may have been used to run their Cadence executions," JetBrains said.

Trusting-Trust Attack against an Entire Linux Distribution (via the strip utility)https://arxiv.org/abs/2607.24888

Ken Thompson's trusting-trust attack, in which a compromised compiler backdoors the programs it builds and reproduces the backdoor in subsequent rebuilds of itself, is widely regarded as a threat specific to compilers. We show that it is not. Comments

β†—
Attackers Exploit PaperCut Flaws to Steal Credentials From Schools and Universitieshttps://thehackernews.com/2026/09/attackers-exploit-papercut-flaws-to.html

Threat actors are exploiting the newly disclosed PaperCut flaws to facilitate credential theft in attacks targeting the education sector in the U.S. and Europe. The Arctic Wolf Adversary Research Team said it observed attackers exploiting CVE-2026-81578 and CVE-2026-82078 – an authentication bypass and remote code execution chain – to conduct command execution and reconnaissance, as well as

0trust.social media

Loading your media...

Pick a GIF β€” Giphy

Loading GIFs...