A curated dispatch from GajShield

The GajShield Gazette

Lead story
Also today
In brief

CISA warns of another cPanel plugin flaw exploited in attacks

The actively exploited LiteSpeed cPanel plugin vulnerability is a serious warning for hosting providers and organizations operating shared …

Jun 17, 2026

144 Mastra npm Packages Compromised via Hijacked Contributor Account

I verified the incident details, including the hijacked contributor account, the 144 affected packages, the easy-day-js dependency, post-in…

Jun 17, 2026

Attackers Exploit Three Fortinet FortiSandbox Flaws, One Patched Last Week

The active exploitation of three critical vulnerabilities in Fortinet FortiSandbox is particularly concerning because the affected product …

Jun 17, 2026

New Rokarolla Android Malware Steals PINs, SMS Codes, and Crypto Wallet Funds

Rokarolla is a newly identified Android banking trojan that demonstrates how mobile malware is evolving from simple credential theft into f…

Jun 17, 2026

GhostTree Attack Abused Recursive Windows Junctions to Hide Malware

The GhostTree technique highlights an important weakness in security architectures that depend too heavily on recursive file scanning. Rese…

Jun 17, 2026

Google Vertex AI SDK Flaw Let Attackers Hijack Model Uploads via Bucket Squatting

The vulnerability discovered in Google Cloud’s Vertex AI Python SDK demonstrates how a seemingly minor weakness in cloud resource handling …

Jun 17, 2026

Malicious JetBrains Marketplace plugins steal AI API keys from developers

The discovery of malicious plugins on the JetBrains Marketplace demonstrates how attackers are increasingly targeting developers through th…

Jun 17, 2026

ShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026-35273) to Breach Universities

The reported ShinyHunters exploitation of Oracle PeopleSoft is a serious reminder that enterprise applications are now prime targets for ex…

Jun 12, 2026

Over 73,000 French govt employees affected in Tchap messenger breach

The Tchap breach is a strong reminder that even “secure” communication platforms can be exposed when attackers compromise user accounts. In…

Jun 12, 2026

Pharma giant Novo Nordisk discloses breach of clinical trials data

The Novo Nordisk security breach highlights how cyberattacks on the healthcare and pharmaceutical sector are no longer limited to disruptin…

Jun 12, 2026

Over 400 Arch Linux packages compromised to push rootkit, infostealer

The compromise of over 400 Arch Linux AUR packages is another reminder that the software supply chain has become one of the easiest ways fo…

Jun 12, 2026