Daily Briefing

CyberGeoDigest

Geopolitical cyber intelligence in 5 minutes
Monday, May 11, 2026 · 9 stories
Share this digest:

Checkmarx Jenkins AST Plugin Hijacked, Malicious Version Pushed to Marketplace (1 minute read)

An unknown actor published a trojaned version of the Checkmarx Jenkins AST plugin to the Jenkins Marketplace, compromising CI/CD pipelines of any organization that updated the plugin.

SecurityWeek · 1h ago · Read full article →

Unknown Actor Phishes 500+ Aviation, Energy, and Infrastructure Firms Over Years (1 minute read)

A multi-year phishing campaign has compromised more than 500 organizations across aviation, energy, logistics, critical infrastructure, and public administration sectors.

SecurityWeek · 6h ago · Read full article →

Drone Surveillance Shatters Western CASEVAC Golden-Hour Doctrine in Modern War (3 minute read)

Persistent battlefield surveillance by drones has made rapid casualty evacuation—the cornerstone of Western military medical doctrine—increasingly untenable in peer or near-peer conflicts.

War on the Rocks · 3h ago · Read full article →

Turkey-Israel Military Confrontation Risk Grows Over Syria, Gaza Disputes (3 minute read)

Escalating disputes over Syria's post-Assad order and Palestinian territories have raised credible risk of direct Turkish-Israeli military clash, with Netanyahu and Erdogan trading public warnings since December 2025. A NATO member in active armed conflict with a key U.S.

War on the Rocks · 3h ago · Read full article →

Cyberattack Knocks Canvas LMS Offline, Disrupting Tens of Thousands of Students (1 minute read)

A cyberattack took down the Canvas learning management system during final exam season, cutting off tens of thousands of students globally before service was restored.

SecurityWeek · 2h ago · Read full article →

TrickMo Android Banker Uses TON Blockchain to Evade C2 Takedowns in Europe (1 minute read)

A new TrickMo variant targeting European banking users routes command-and-control traffic through The Open Network blockchain, making infrastructure takedowns by defenders effectively impossible.

BleepingComputer · 1h ago · Read full article →

Attackers Weaponize Google Ads and Claude.ai Chats to Deliver Mac Malware (1 minute read)

An active malvertising campaign abuses Google Ads and legitimate Claude.ai shared-chat URLs to redirect Mac users searching for Claude to malware installers. Hijacking a trusted AI platform's own domain as a lure defeats URL-reputation defenses and exploits user trust in branded AI services.

BleepingComputer · 16h ago · Read full article →

Dirty Frag Linux Flaws CVE-2026-43284 and CVE-2026-43500 Exploited Before Patch (1 minute read)

Two Linux vulnerabilities tracked as CVE-2026-43284 and CVE-2026-43500, dubbed Dirty Frag and Copy Fail 2, were publicly disclosed and possibly exploited before a patch was released. Pre-patch disclosure with active exploitation signals a coordinated or irresponsible release that hands attackers a guaranteed window.

SecurityWeek · 2h ago · Read full article →

Bleeding Llama CVE-2026-7482 Exposes Full Memory of 300,000+ Ollama Servers (1 minute read)

Cyera disclosed CVE-2026-7482 (CVSS 9.1), an unauthenticated out-of-bounds read in Ollama that allows remote attackers to exfiltrate the entire process memory of affected AI inference servers.

The Hacker News · 21h ago · Read full article →

Get this in your inbox

Free daily briefing. No spam. Unsubscribe anytime.

Subscribe Now