OpenAI rolls out ChatGPT Library to store your personal files
2026-03-24T01:23:31Z•67dbda5d61bb7abe3f11a42008da937d79d6788025b14076032d706d449ec73f
CISACrunchyrollDarkSwordDockerExchange Online outage/impacted-signin-flowed-systems?GitHubHandalaKB5085516MazdaMicrosoftTeamPCPTelegramTrivyTycoon2FAVoidStealercredential-theftdata-breachiOS-vulnerabilitieskubernetes-wipermalwarepatchphishingphishing-as-a-servicesupply-chainsupply-chain-attack
What happened
Multiple high-impact security events reported: TeamPCP continues an active supply-chain campaign—compromising Trivy/Aqua Security, pushing malicious Docker images, and hijacking GitHub repos—and has deployed an Iran-targeted wiper against Kubernetes clusters. Tycoon2FA phishing-as-a-service resurfaced after law-enforcement disruption. Major breaches/claims include a Crunchyroll incident affecting ~6.8M users and a Mazda incident exposing employee and partner data. Malware activity includes VoidStealer (new technique to extract Chrome master key) and FBI warnings about Iran-linked Handala using
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- 67dbda5d61bb7abe3f11a42008da937d79d6788025b14076032d706d449ec73f
- Enrichment time
- 2026-03-24T01:23:31Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.