A supply chain cyberattack aimed at users of the Koishi chatbot has been detected, utilising a harmful npm package “koishi-plugin-pinhaofa.” The package monitors all messages processed by the chatbot, forwarding any that contain an eight-character hexadecimal string to a hardcoded QQ account. This may unknowingly disclose sensitive user data. Security experts recommend reviewing installed plugins and isolation of bots to prevent unauthorised data transmission.

Cyberattack Takes Down Wisconsin-Based Mobile Carrier – PCMag Middle East
A cyberattack has disrupted operations at a Wisconsin-based mobile carrier, impacting services for customers. The attack’s specifics remain unclear, but it underscores vulnerabilities faced by