A cyberattack on email service provider Brevo compromised 347,000 Trezor customer records, fueling sophisticated phishing campaigns designed to steal crypto recovery seeds.
A self-propagating worm compromised hundreds of popular npm packages, harvesting cloud keys and CI tokens then using them to publish further poisoned releases.
Researchers logged 7.4 million infected devices between January and June 2026 — a 27% jump — as the infostealer market matured into a fully automated criminal supply chain.