CVE Tools
Back to feed

⚡ Weekly Recap: AI-Powered PLC Attacks, GitLab Attacks, Stripe Key Leaks and More

The Hacker News·By The Hacker News··12 min read
CVE Tools coverage

U.S. government agencies warn that threat actors are leveraging artificial intelligence to generate exploit scripts for internet-exposed Siemens S7 Series PLCs, posing an active risk to critical infrastructure sectors like water and energy. Meanwhile, GitLab is facing immediate danger as CVE-2026-19478, a high-severity code injection flaw, is being actively exploited by unauthenticated attackers to modify public projects. Other significant developments include the leakage of live API keys for 659 Stripe merchants, the discovery of 768 corporate AWS keys with full administrative rights in public repositories, and the release of RedC2 4.0 Linux backdoors via trojanized npm packages.