TanStack supply-chain attack in May 2026 compromised an NPM package repository, leading to unauthorized access of approximately 170 private CrowdSec GitHub repositories by a BreachForum member on May 22nd. CrowdSec discovered and responded to the incident starting September 16th with credential rotation and forensic investigation, finding that while private code was exposed, the primary risk concerned any embedded credentials that required immediate deprecation.
On June 27, 2017, the shipping conglomerate A.P. Møller-Maersk fell victim to a devastating cyberattack that encrypted files across its global network, forcing employees to disconnect systems and causing widespread operational paralysis. The malware, later identified as NotPetya, spread rapidly through Maersk's infrastructure, leaving IT staff unable to restore operations and forcing the company to shut down its entire global network.
Hackers created fake YouTube tutorials claiming to teach users how to build a crypto arbitrage bot using Claude. The fraudulent videos guided victims through deploying a smart contract, but a fake compiler secretly replaced the displayed code with malicious contracts designed to steal cryptocurrency.
SlowMist and OKX security teams discovered that FomoPeek App versions 1.1–1.2 contain malicious code including an iOS kernel exploitation framework capable of escaping sandboxes and accessing private keys and sensitive data. The affected iOS versions range from 12.0–18.7 and 26.0–26.1, with users advised to check accounts, create new wallets, and stop using the app immediately.