Robuta

https://www.theregister.com/2024/10/30/zeroday_windows_themes/ Windows Themes 0-day opens door to NTLM credential theft • The Register Oct 30, 2024 - Plus a free micropatch until Redmond fixes the flaw 0 daycredential theftwindowsthemesopens https://www.trendmicro.com/vinfo/us/security/news/cybercrime-and-digital-threats/from-stealers-to-systems-the-new-model-of-credential-theft From Stealers to Systems:The New Model of Credential Theft | Trend Micro (US) Tightening security controls and other underground factors are forcing infostealer operations to adapt. TrendAI™ Research explores their evolution into... new modelcredential thefttrend microsystemsus https://thehackernews.com/2025/11/second-sha1-hulud-wave-affects-25000.html Second Sha1-Hulud Wave Affects 25,000+ Repositories via npm Preinstall Credential Theft Security vendors warn Sha1-Hulud has hijacked 25,000+ GitHub repos via npm packages, stealing cloud credentials or wiping dev home directories. credential theftsecondsha1waverepositories