A curated dispatch from GajShield

The GajShield Gazette

Lead story

Fake OpenAI repository on Hugging Face pushes infostealer malware

The fake OpenAI repository on Hugging Face shows how quickly attackers are adapting to the AI supply chain. By impersonating a legitimate OpenAI “Privacy Filter” project and reaching Hugging Face’s trending list, the malicious repository gained credibility before delivering an…

Also today
In brief

Fake Call History Apps Stole Payments From Users After 7.3 Million Play Store Downloads

The CallPhantom campaign shows that mobile fraud does not always need dangerous permissions or advanced malware. These apps reportedly did …

May 08, 2026

NVIDIA confirms GeForce NOW data breach affecting Armenian users

The NVIDIA GeForce NOW incident again highlights that the security boundary of a cloud service does not end with the primary brand. Even wh…

May 08, 2026

Zara data breach exposed personal information of 197,000 people

The Zara breach again shows that third-party and former-provider environments remain a serious blind spot. Even when core systems, credenti…

May 08, 2026

New Linux PamDOORa Backdoor Uses PAM Modules to Steal SSH Credentials

PamDOORa is a reminder that Linux server security cannot stop at patching alone. Since this backdoor abuses PAM, the authentication layer i…

May 08, 2026

Linux Kernel Dirty Frag LPE Exploit Enables Root Access Across Major Distributions

The recently disclosed Linux kernel “Dirty Frag” local privilege escalation issue is an important reminder that kernel-level vulnerabilitie…

May 08, 2026

Australia warns of ClickFix attacks pushing Vidar Stealer malware

Australia’s warning on ClickFix attacks distributing Vidar Stealer is an important reminder that social engineering is becoming more direct…

May 08, 2026

New PCPJack worm steals credentials, cleans TeamPCP infections

The PCPJack worm highlights how exposed cloud infrastructure can quickly become a large-scale credential theft and lateral movement problem…

May 08, 2026

Canvas Breach Disrupts Schools & Colleges Nationwide

The reported Canvas/Instructure breach is a serious reminder that SaaS platforms used by schools, colleges, and enterprises often hold larg…

May 08, 2026

Ivanti warns of new EPMM flaw exploited in zero-day attacks

The reported Ivanti EPMM zero-day exploitation is another reminder that enterprise management platforms are high-value targets. As per publ…

May 07, 2026

The Browser Is Breaking Your DLP: How Data Slips Past Modern Controls

The discussion around browser-based data leakage highlights a challenge that many organizations are now facing: sensitive data does not lea…

May 07, 2026

DAEMON Tools devs confirm breach, release malware-free version

The DAEMON Tools breach is a strong reminder that software supply-chain attacks are no longer limited to unknown or suspicious downloads. I…

May 07, 2026