DigiCert Breach & Ivanti Zero-Day – Weekly News Roundup

Here is the most recent Cybersecurity news for the past week:

🔐DigiCert Breach Enables Malware Signed as Legitimate Software
Attackers leveraged compromised or misused code-signing certificates to digitally sign malware, making it appear legitimate and increasing the likelihood of execution. This incident highlights how trust mechanisms themselves can be abused to bypass security controls.
https://www.helpnetsecurity.com/2026/05/04/digicert-breach-code-signing-certificates-malware/

🚨 Ivanti Zero-Day Actively Exploited in VPN Appliances
Security researchers and CISA confirmed active exploitation of a new Ivanti Connect Secure zero-day vulnerability, allowing unauthenticated remote code execution on internet-facing VPN devices. Organizations are being urged to apply mitigations immediately as exploitation is already widespread.
https://www.cisa.gov/news-events/cybersecurity-advisories/aa26-127a

🧠 OpenAI Warns of Prompt Injection Attacks Targeting Enterprise AI Tools
Researchers highlighted a rise in prompt injection attacks against enterprise AI deployments, where malicious inputs manipulate AI outputs or expose sensitive data. The issue is becoming a growing concern as organizations integrate AI into workflows without proper guardrails.
https://www.darkreading.com/application-security/prompt-injection-attacks-enterprise-ai

📧 Massive Phishing Campaign Uses OAuth Apps to Bypass MFA
Threat actors are leveraging malicious OAuth applications to gain persistent access to Microsoft 365 environments, bypassing traditional MFA protections. Once users grant permissions, attackers can access email, files, and contacts without needing credentials.
https://www.bleepingcomputer.com/news/security/malicious-oauth-apps-used-to-hijack-microsoft-365-accounts/

💾 GitHub Action Supply Chain Attack Exposes CI/CD Pipelines
A compromised GitHub Action was used to exfiltrate secrets from CI/CD pipelines, impacting multiple organizations using automated workflows. The attack highlights ongoing risks in software supply chains and the need for strict dependency controls.
https://www.bleepingcomputer.com/news/security/github-action-supply-chain-attack-exposes-secrets/

newsletter signup

Our goal? To deliver the best cybersecurity insights you can read in five minutes or less — straight to your inbox, once a week.

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

newsletter signup

Our goal? To deliver the best cybersecurity insights you can read in five minutes or less — straight to your inbox, once a week.

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.