CVE-2026-5194
Domains:
flipboxstudio[.]info., flipboxstudio[.]info, github[.]com
Get tomorrow's brief in your inbox
Today: Multiple PHP package supply chain attacks hit Laravel and Composer ecosystems with cross-platform credential stealers targeting cloud keys, browser data, and crypto wallets. Anthropic's Claude Mythos AI finds 10,000+ high-severity flaws in critical software. New npm controls require 2FA approval before packages go live.
Laravel Lang Package Compromise
Attackers compromised four Laravel Lang localization packages (laravel-lang/lang, laravel-lang/http-statuses, laravel-lang/attributes, laravel-lang/actions) by rewriting 700+ GitHub version tags to point at malicious commits in attacker-controlled forks. The attack introduced a cross-platform credential stealer that executes automatically via Composer's autoload.files mechanism. The malware harvests AWS keys, GitHub tokens, cloud credentials (AWS/Azure/GCP), Kubernetes secrets, Vault tokens, CI/CD secrets, SSH keys, browser data from Chrome/Edge/Brave, cryptocurrency wallets, password managers (1Password, Bitwarden, LastPass), and VPN configurations. On Windows, it deploys a separate executable that bypasses Chrome's App-Bound Encryption to extract saved credentials. Command and control server: flipboxstudio[.]info.
Packagist Supply Chain Attack (Second Wave)
Eight additional Composer packages were compromised with malicious code in package.json (not composer.json), targeting projects that bundle JavaScript build tools alongside PHP. The attack adds a postinstall script that downloads a Linux binary from github[.]com/parikhpreyash4/systemd-network-helper-aa5c751f, saves it to /tmp/.sshd, grants execute permissions, and runs it in the background. The malware disables TLS verification and suppresses errors to hide activity. Socket found the same payload referenced in 777 GitHub files, suggesting a broader campaign. Affected packages: moritz-sauer-13/silverstripe-cms-theme, crosiersource/crosierlib-base, devdojo/wave, devdojo/genesis, katanaui/katana, elitedevsquad/sidecar-laravel, r2luna/brain, baskarcm/tzi-chat-ui (all dev-master/dev-main branches).
Underminr CDN Vulnerability
A domain fronting variant called Underminr allows attackers to hide connections to malicious domains behind trusted domains on shared CDN infrastructure. The attack presents a trusted domain in SNI and HTTP Host headers while forcing the request to a different tenant's IP on the same shared edge. This bypasses DNS monitoring and Protective DNS filtering. Threat actors use it to hide C2 connections, VPN/proxy traffic, and circumvent egress policies. The vulnerability affects 88 million domains, primarily in US, UK, and Canadian internet infrastructure. ADAMnetworks warns AI-generated malware will increasingly exploit this technique.
WolfSSL Certificate Forgery (CVE-2026-5194)
Anthropic's Project Glasswing found a critical vulnerability in WolfSSL (CVE-2026-5194, CVSS 9.1, EPSS 0.000/3rd percentile) that allows certificate forgery, enabling attackers to impersonate legitimate services. The flaw was discovered by Claude Mythos Preview, an AI model with autonomous vulnerability discovery capabilities. Project Glasswing has identified 10,000+ high or critical severity vulnerabilities across 1,000+ open-source projects since launch, with 1,726 confirmed true positives and 1,094 assessed as high or critical severity. 97 findings have been patched and 88 advisories issued. Anthropic notes that AI-assisted vulnerability discovery is increasing patch volume across the industry, with Microsoft reporting larger monthly patch releases for the foreseeable future.
npm Adds Staged Publishing + 2FA Requirement
GitHub rolled out staged publishing for npm, requiring maintainers to pass a 2FA challenge before packages become publicly installable. The feature uploads prebuilt tarballs to a staging queue where a human must explicitly approve them before release. This adds "proof of presence" to every publish, including CI/CD workflows using OIDC trusted publishing. To use staged publishing, accounts must have publish access, 2FA enabled, and the package must already exist on npm (new packages cannot be staged). Command: npm stage publish (requires npm CLI 11.15.0+). GitHub also added three new install source flags: allow-file (local paths/tarballs), allow-remote (https URLs), allow-directory (local directories), complementing the existing allow-git flag. These changes respond to massive supply chain attacks from groups like TeamPCP that have poisoned popular packages at scale.
Italian Authorities Disrupt CINEMAGOAL Piracy Network
Italy's Guardia di Finanza dismantled CINEMAGOAL, a sophisticated piracy app that provided access to Netflix, Disney+, Spotify, Sky, and DAZN by stealing authentication codes from legitimate subscriptions every 3 minutes via virtual machines. The operation seized servers in France and Germany containing app source code. The system used fake identification to open legitimate subscriptions, then redistributed decryption codes to 70+ resellers who sold annual access for €40-€130. Payments processed via cryptocurrency or foreign bank accounts. CINEMAGOAL had superior quality because users streamed directly from legitimate platforms (not pirate streams) and masked customer IP addresses. Authorities estimate €300 million in damages and have sent penalties of €154-€5,000 to the first 1,000 identified subscribers.
UK Water Utility Data Breach Victims Report Impact
Victims of the 2020 South Staffs Water breach continue reporting feelings of violation and lost trust after 633,887 customer records were stolen and published on the dark web. Customers face ongoing scam emails following the breach.
UK Secures £355,880 Confiscation Order in Motor Insurance Data Theft
The UK Information Commissioner's Office secured a £355,880.10 confiscation order against Rizwan Manjra, a former Manchester motor insurance worker who unlawfully accessed personal information. This follows a previous suspended prison sentence.
Rhode Island Workers' Compensation Vendor Breach Affects 131,000
Rhode Island's workers' compensation insurance administrator disclosed a January breach affecting 131,000 residents, including 4,500 current and former state employees. This follows the separate RIBridges/Deloitte breach that affected 730,000+ residents, raising vendor security monitoring concerns.
The PHP/Composer ecosystem faces coordinated supply chain attacks using novel techniques: GitHub tag rewriting (Laravel Lang) and cross-ecosystem payload delivery via package.json in PHP packages. Both attacks deliver cross-platform credential stealers targeting cloud infrastructure, CI/CD systems, and cryptocurrency. The attacks show increasing sophistication in evading security reviews by modifying deployment mechanisms rather than source code. AI-assisted vulnerability discovery (Claude Mythos, GPT-5.5-Cyber) is accelerating patch cycles and increasing vulnerability volumes across the industry.