Weekly Cyber Threat Intelligence: npm 2FA, LiteSpeed CVE, Drupal SQL Injection, and Ransomware VPN Takedowns
This week: npm 2FA-gated publishing, LiteSpeed CVE-2026-48172 exploited for root on shared hosting, Drupal SQLi added to CISA KEV, 8 Packagist packages shipping Linux malware, a CVSS 10.0 Cisco flaw, and the first VPN takedown over ransomware facilitation.
