| North Carolina Ports, Metabase and npm Supply-Chain Cyberattacks
Listen now
Stream the full 3:56 briefing here, and it keeps playing as you browse.
Prefer your own app?
In this briefing: 5 stories
Hacked dAily is the first AI-driven cybersecurity podcast from Cytadel Cyber, published daily for CISOs, security leaders, and business decision-makers. Today’s episode covers five developments with direct implications for resilience, data protection, and enterprise risk.
- 01
A cyberattack disrupted IT systems at North Carolina’s Wilmington, Morehead City, and Charlotte Inland ports, delaying gates and affecting truck and vessel activity. The incident highlights the operational and economic impact of attacks on critical logistics infrastructure, while questions remain over possible data theft.
- 02
Metabase disclosed an actively exploited, critical SQL injection flaw affecting cloud and self-hosted deployments, potentially enabling administrator access. Customers are urged to patch, revoke sessions, rotate credentials, and investigate logs as reported impacts raise concerns about exposed data and connected databases.
- 03
Nearly 800 malicious npm packages used typo-squatting and deceptive instructions to deliver a cross-platform remote access trojan and infostealer. The campaign demonstrates how developer environments can become a pathway into enterprise networks and targeted financial operations.
- 04
Atlassian fixed RovoBlast, a flaw that could let a clicked link inject instructions into Rovo AI sessions and expose data across Jira, Confluence, Bitbucket, and connected services. The incident shows how trusted AI agents can amplify the impact of untrusted content.
- 05
Research shows malware in a signed-in Windows session can abuse a victim’s Windows Hello for Business key to authenticate to Microsoft Entra ID without extracting the key or requiring administrator rights. Organizations should watch for unusual device registrations, suspicious sign-ins, and potential cloud persistence.