Onit Security Raises $11 Million for Exposure Management Platform

2026-03-26T07:24:06Z93e1d78af178daedd1f343afb93c3ab25fca22ed0020f3af1428442cf6b9f3f8
ATK236Apple-patchesDocker HubFCCGitHub ActionsHackerOneLapsus$Monster-LibraNPMNaviaPyPIShathakTA-551TeamPCPVS CodeYanluowangaccess-brokerdata-breachiOSmacOSopen-sourceransomwarerouter-ban','national-security'supply-chainvulnerability-patch

What happened

This collection of SecurityWeek items highlights multiple high-impact cyber developments: a broad open‑source supply‑chain compromise by TeamPCP (compromised GitHub Action tags, then NPM, Docker Hub, VS Code, PyPI) with ties to Lapsus$; Apple pushed iOS/macOS security updates; the FCC banned new consumer routers manufactured abroad citing national‑security risks; major criminal sentences (Ilya Angelov tied to TA‑551 and Aleksei Volkov as an access broker for Yanluowang ransomware) and ongoing law‑enforcement disruption; a Navia breach exposed hundreds of HackerOne employee records; PwC warned:

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityweek
Record identifier
93e1d78af178daedd1f343afb93c3ab25fca22ed0020f3af1428442cf6b9f3f8
Enrichment time
2026-03-26T07:24:06Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.