Please turn JavaScript on

eSecurity Planet

Click on the "Follow" button below and you'll get the latest news from ESecurity Planet via email, mobile or you can read them on your personal news page on this site.

You can unsubscribe anytime you want easily.

You can also choose the topics or keywords that you're interested in, so you receive only what you want.

ESecurity Planet title: ESecurity Planet: Latest Cybersecurity News for IT Professionals

Is this your feed? Claim it!

Publisher:  Unclaimed!
Message frequency:  20.18 / week

Message History

A new wave of Shai-hulud malware is quietly weaponizing trusted npm packages to steal multi-cloud secrets and backdoor developer ecosystems at scale. 

The campaign, dubbed Shai-hulud 2.0, automates credential theft and supply chain compromise in a way that could ripple far beyond a single maintainer or project.

s...

Read full story

Digital calendars may seem like one of the safest apps on your device — but new research shows they’re becoming a powerful, overlooked attack vector. 

Millions of users who subscribe to external calendars for holidays, promotions, or event reminders may be unknowingly connecting to abandoned domains now ripe for takeover. </spa...

Read full story

South Korea is facing one of its largest-ever data incidents after Coupang — often called the country’s Amazon — confirmed a breach that potentially exposed the personal details of 33.7 million customer accounts. 

The retailer initially believed only a few thousand users were affected, but an internal investigation revealed a larger...

Read full story

Xillen Stealer’s new versions add aggressive capabilities targeting browsers, cloud platforms, containers, developer tools, and even biometric data — while claiming AI-powered targeting and evasion. 

The updates, shared through Telegram-based sales channels, show how threat actors are escalating toward more automated and harder-to-d...

Read full story

A newly discovered memory corruption vulnerability in vLLM could let attackers crash servers or execute arbitrary code by sending malicious prompt embeddings to the Completions API.

The flaw style=...

Read full story