A curated dispatch from GajShield

The GajShield Gazette

Lead story
Also today
In brief

AI Models Vote on Malware's Next Move in New CLOSEDQUORUM Windows Implant

Cisco Talos has documented a Windows malware prototype called CLOSEDQUORUM that introduces an unusual approach to command-and-control:…

Sep 24, 2026

Leaked GitLab Issue Email Can Let Attackers Push Code and Trigger CI/CD Jobs

The disclosure around GitLab’s incoming email feature highlights an unusual but important security lesson: sometimes something that l…

Sep 23, 2026

CVE-2026-67279 and CVE-2026-86060 Combined for Unauthenticated MikroTik Router Takeover

The disclosure of the full technical details behind MikroTrick reveals a particularly dangerous attack chain affecting MikroTik Router…

Sep 23, 2026

Malicious AI Agents Steal 600,000 Credit Cards in Large-Scale E-Commerce Attack Campaign

The discovery of a financially motivated cybercrime campaign using autonomous AI agents to attack online retailers represents an important …

Sep 23, 2026

Compromised MemTensor Packages Deliver Cross-Platform Credential Stealer via npm and PyPI

The compromise of legitimate MemTensor packages across both npm and the Python Package Index (PyPI) highlights a particularly dangerous for…

Sep 23, 2026

CVE-2026-85046, CVE-2026-87491, CVE-2026-85880 - Chinese Threat Actor Exploits Chrome-Windows Zero-Day Chain to Deploy CLEANGULP Malware

The latest disclosure involving UTA0565, a China-linked threat actor tracked by Volexity, highlights how quickly sophisticated exploit…

Sep 23, 2026

CVE-2026-94127: Hackers Exploit Critical F5 BIG-IP APM OAuth Server Flaw

The disclosure of CVE-2026-94127, an actively exploited critical vulnerability in F5 BIG-IP Access Policy Manager (APM), highlights a …

Sep 23, 2026

CVE-2026-85102, CVE-2026-93616, CVE-2026-93952, CVE-2026-94127 - CISA Adds Four Actively Exploited Network Security Flaws to KEV Catalog

CISA's addition of four vulnerabilities to its Known Exploited Vulnerabilities Catalog on September 22, 2026 deserves particular attention …

Sep 23, 2026

Malicious npm Package Masquerades as Twilio Bug-Bounty Tool to Steal Developer Credentials

The discovery of the malicious npm package tw-pkgprobe-7731 highlights a growing software supply-chain risk: attackers are not always …

Sep 23, 2026

Sweden Fines Miljödata After Data Breach Exposes Information of 2.2 Million People

Sweden’s decision to fine Miljödata SEK 1.8 million following a major 2025 cyberattack highlights an important point about data-…

Sep 23, 2026

Macfinger ClickFix Campaign Targets macOS Users Through Compromised Websites

The newly documented Macfinger ClickFix campaign is a useful reminder that macOS users are increasingly being targeted through attack …

Sep 23, 2026