36 Malicious npm Packages Disguised as Strapi Plugins Deploy Persistent Backdoors via Redis and PostgreSQL
Summary Security researchers have uncovered a coordinated supply chain attack involving 36 malicious npm packages disguised as legitimate Strapi CMS plugins. The packages — named with patterns like “strapi-plugin-cron” and…
Iran Deploys Spyware via Fake Shelter Alerts During Missile Strikes on Israel
Summary In a chilling example of synchronized physical and digital warfare, Iranian-linked operators deployed spyware to Israeli Android users during active missile strikes in March and April 2026. Victims received…
Dutch Telecom Giant Odido Hit by Massive Breach — 6 Million Customers Exposed
Summary Dutch telecommunications provider Odido has confirmed a massive cyberattack that exposed the personal information of over 6 million customers — a staggering number in a country of just 17…
OpenAI Valued at $852 Billion as It Unveils ChatGPT “Super App” Strategy
Summary OpenAI has confirmed a massive new funding round that values the company at $852 billion, making it one of the most valuable private companies in history. Alongside the funding…
Critical Progress ShareFile Flaws Allow Unauthenticated Remote Code Execution
Summary Security researchers are sounding the alarm on two critical vulnerabilities in Progress Software’s ShareFile Storage Zones Controller, tracked as CVE-2026-2699 and CVE-2026-2701. When chained together, these flaws allow an…
Google Unveils TurboQuant: 6x Memory Reduction for AI Models With No Accuracy Loss
Summary Google has unveiled TurboQuant, a new quantization algorithm that dramatically improves AI model efficiency. The algorithm achieves at least a 6x reduction in memory usage and delivers up to…
China-Linked Breach of FBI Surveillance System Classified as “Major Incident”
Summary A suspected China-linked threat actor has breached an FBI surveillance system, potentially exposing the phone numbers of targets being actively monitored by the bureau. The FBI has classified the…
Second Fortinet FortiClient EMS Zero-Day in Weeks — CVE-2026-35616 Under Active Exploitation
Summary Fortinet has disclosed yet another zero-day vulnerability in its FortiClient Endpoint Management Server (EMS), tracked as CVE-2026-35616. The improper access control flaw affects FortiClient EMS versions 7.4.5 and 7.4.6…
Microsoft Commits $5.5 Billion to Singapore AI Infrastructure in Landmark Five-Year Deal
Summary Microsoft has announced a $5.5 billion investment in Singapore over five years to expand the nation’s AI infrastructure and capabilities. The deal, announced April 1, 2026, represents one of…
67% of US State Legislators Have Data Exposed on the Dark Web, Proton Investigation Reveals
Summary A new investigation by Proton, published April 1, 2026, found that 67% of US state legislators have had their data leaked on the dark web through breaches linked to…
