Fixed Intel

Knowledge Hub

Guides, playbooks, and learning resources to level up your cybersecurity knowledge and keep your organization secure.

Industry News

China-Backed Hackers Are Industrializing Botnets

Dark Reading
Industry News

China-Backed Hackers Are Industrializing Botnets

China's state-backed groups are now using covert networks of compromised devices to execute attacks in a low-cost, low-risk, and deniable way.

Dark ReadingApr 23, 20261m1
Bitwarden CLI npm package compromised to steal developer credentials
BleepingComputer
Malware & Threats

Bitwarden CLI npm package compromised to steal developer credentials

The Bitwarden CLI was briefly compromised after attackers uploaded a malicious @bitwarden/cli package to npm containing a credential-stealing payload capable of spreading to other projects.

BleepingComputerApr 23, 20264m2
Trigona ransomware attacks use custom exfiltration tool to steal data
BleepingComputer
Malware & Threats

Trigona ransomware attacks use custom exfiltration tool to steal data

Recently observed Trigona ransomware attacks are using a custom, command-line tool to steal data from compromised environments faster and more efficiently.

BleepingComputerApr 23, 20263m2
UNC6692 Impersonates IT Helpdesk via Microsoft Teams to Deploy SNOW Malware
The Hacker News
Industry News

UNC6692 Impersonates IT Helpdesk via Microsoft Teams to Deploy SNOW Malware

UNC6692 targeted 77% senior employees between March 1–April 1, 2026, via Teams impersonation, enabling malware, data theft.

The Hacker NewsApr 23, 20265m2
New Checkmarx supply-chain breach affects KICS analysis tool
BleepingComputer
Malware & Threats

New Checkmarx supply-chain breach affects KICS analysis tool

Hackers have compromised Docker images, VSCode and Open VSX extensions for the Checkmarx KICS analysis tool to harvest sensitive data from developer environments.

BleepingComputerApr 23, 20263m2
Cloudsmith Raises $72 Million in Series C Funding
SecurityWeek
Industry News

Cloudsmith Raises $72 Million in Series C Funding

The company will use the investment to accelerate product development and grow go-to-market efforts.

SecurityWeekApr 23, 20262m3
Industry News

Bad Memories Still Haunt AI Agents

Dark Reading
Industry News

Bad Memories Still Haunt AI Agents

Cisco found and fixed a significant vulnerability in the way Anthropic handles memories, but experts warn that mishandled memory files will continue threaten AI systems.

Dark ReadingApr 23, 20261m3
Cosmetics giant Rituals discloses data breach affecting customers
BleepingComputer
Malware & Threats

Cosmetics giant Rituals discloses data breach affecting customers

Dutch cosmetics giant Rituals disclosed a data breach after attackers stole the personal information of an undisclosed number of customers from its "My Rituals" membership database.

BleepingComputerApr 23, 20262m3
Regular Password Resets Aren’t as Safe as You Think
BleepingComputer
Malware & Threats

Regular Password Resets Aren’t as Safe as You Think

Password resets are one of the easiest ways for attackers to bypass security controls. Specops Software shows how helpdesk social engineering turns a seemingly legitimate reset request into full account compromise.

BleepingComputerApr 23, 20265m3
Bitwarden CLI Compromised in Ongoing Checkmarx Supply Chain Campaign
The Hacker News
Industry News

Bitwarden CLI Compromised in Ongoing Checkmarx Supply Chain Campaign

Bitwarden CLI 2026.4.0 was compromised via GitHub Actions in Checkmarx campaign, exposing secrets and distributing malicious npm code

The Hacker NewsApr 23, 20262m3
Microsoft: Some Teams users can’t join meetings after Edge update
BleepingComputer
Malware & Threats

Microsoft: Some Teams users can’t join meetings after Edge update

Microsoft confirmed that a recent Microsoft Edge browser update introduced a bug that prevents Windows users from joining Teams meetings.

BleepingComputerApr 23, 20262m3
Industry News

ThreatsDay Bulletin: $290M DeFi Hack, macOS LotL Abuse, ProxySmart SIM Farms +25 New Stories

The Hacker News
Industry News

ThreatsDay Bulletin: $290M DeFi Hack, macOS LotL Abuse, ProxySmart SIM Farms +25 New Stories

You scroll past one incident and see another that feels familiar, like it should have been fixed years ago, but it still works with small changes. Same bugs. Same mistakes. The supply chain is messy. Packages you did not check are stealing data, adding backdoors, and spreading. Attacking the syst...

The Hacker NewsApr 23, 20261m3