Krebs on Security
krebs · B · active
Investigative cybersecurity journalism. RSS at https://krebsonsecurity.com/feed/. (v2.55: rss_url verified, use `python3 tools/fetch_source.py feed https://krebsonsecurity.com/feed/ [N]`) | 2026-06-20 full audit (v2.62): live=Y, drill=Y. FETCH → feed https://krebsonsecurity.com/feed/ 5 (then webfetch per-article URL for full body). AVOID: Don't WebFetch the homepage when the feed already returns full dated items with rich summaries; the feed is the cheaper path.. | 2026-07-05 admiralty audit: B, original investigative journalism, corroborated, strong track record. Reliability HIGH->B, status stays active.
Cited in 11 entries
Citation cadence
Citation days per ISO week (17 weeks of coverage span, total 11).
- A dark-web identity-theft storefront sells 153 million+ driver's-license scans traced to identity-verification vendor IDScan.net; FBI opens a formal investigation2026-09-06
- AFP-FBI-WAPF disrupt TeamPCP: two Western Australia men charged over the npm/GitHub supply-chain worm operation AFP estimates compromised 1,000+ organisations, 500,000+ credentials and 300+ GB of data2026-08-28
- Connor Moucka pleads guilty over the 2024 SaaS-tenant mass-extortion campaign, 165+ victim organisations reached with stolen credentials and no vulnerability in the platform2026-08-10
- Microsoft July 2026 Patch Tuesday ships two actively-exploited zero-days, AD FS local EoP (CVE-2026-56155) and unauthenticated SharePoint EoP (CVE-2026-56164)2026-07-14
- Krebs and Qurium tie the "Popa" Android-TV residential-proxy botnet to a NASDAQ-listed proxy vendor2026-06-21
- The Gentlemen (Storm-2697) claims OT-adjacent Mackay Sugar attack; operator attributed to a Russian national2026-06-20
- The Gentlemen ransomware: 478 claimed leak-site victims, self-propagating Go encryptor, operator publicly named2026-06-12
- Attackers social-engineer Meta's AI support chatbot into resetting Instagram passwords2026-06-02
- Kimwolf / "Dort" DDoS-for-hire operator arrested, 30+ Tbps IoT botnet, U.S. DoD-range targeting, AISURU variant2026-05-23
- CISA contractor (Nightwing) exposed AWS GovCloud admin keys and internal credentials in public GitHub repo for ~6 months2026-05-19
- CVE-2026-41089 / CVE-2026-41096 / CVE-2026-41103 / CVE-2026-42898; Microsoft May 2026 Patch Tuesday (120+ CVEs, no zero-days)2026-05-13