Cybersecurity briefing, 2026-05-11 A malicious version of the Checkmarx Jenkins plugin slipped onto the official Jenkins Marketplace, sitting right inside the build pipelines that companies trust to scan their own code for vulnerabilities.
Recent editions Sunday, May 10, 2026: cPanel Control-Plane Flaws Expose Hosted Sites · 1 storySaturday, May 9, 2026: cPanel Control-Plane Flaws Expose Hosted Sites · 6 storiesFriday, May 8, 2026: vm2’s Sandbox Breakouts Multiply Beyond One Fix · 8 storiesThursday, May 7, 2026: DAEMON Tools Build Pipeline Became the Attack Vector · 18 storiesWednesday, May 6, 2026: DAEMON Tools Build Pipeline Became the Attack Vector · 19 storiesTuesday, May 5, 2026: Weaver E-cology flaw turned servers into command shells · 19 storiesMonday, May 4, 2026: MOVEit Automation Auth Bypass Forces Full-Installer Upgrades · 11 stories