Breaking News – Cyber Threats (last 6h)
Generated: 2026-07-28 22:00 PDT
- Two Compromised joyfill npm Packages Run RAT When Imported Into Node.js
The Hacker News • 2026-07-28 21:20 • thehackernews.com
Beta release versions of two npm packages in the @joyfill namespace have been compromised to deliver a remote access trojan (RAT) associated with the DEV#POPPER malware family.The list of affected packages is as follows –
@joyfill/layouts@0.1.2-2773.beta.0
@joyfill/components@4.0.0-rc24-2773-beta.4The two packages “contain an import-time JavaScript implant that resolves encrypted code
https://thehackernews.com/2026/07/two-compromised-joyfill-npm-packages.html - ISC Stormcast For Wednesday, July 29th, 2026 https://isc.sans.edu/podcastdetail/10028, (Wed, Jul 29th)
SANS ISC Diary (full) • 2026-07-28 19:00 • isc.sans.edu
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
https://isc.sans.edu/diary/rss/33194 - Measuring LLMs’ Ability to Perform Cryptanalysis
Schneier on Security • 2026-07-28 18:47 • www.schneier.comThere’s new benchmark measuring AI’s ability to perform mathematical cryptanalysis. Anthropic’s frontier model actually found new attacks.
The benchmark: “CryptanalysisBench: Can LLMs do Cryptanalysis?” The idea is to benchmark the ability of LLMs to discover new mathematical cryptanalytic attacks against a series of historical algorithms.
Abstract: Cryptanalysis—the task of finding attacks against cryptographic schemes—its at the intersection of mathematical reasonin…
https://www.schneier.com/blog/archives/2026/07/measuring-llms-ability-to-perform-cryptanalysis.html
Sources: BleepingComputer, The Hacker News, KrebsOnSecurity, SANS ISC, CISA.
