Splunk RCE, Arch Linux supply-chain hijack, Velvet Ant decade-long backdoor
Splunk Enterprise CVE-2026-20253 (CVSS 9.8) enables unauthenticated RCE; 400+ Arch Linux AUR packages hijacked with infostealer/rootkit; China-linked Velvet Ant maintained decade-long PAM/OpenSSH backdoor.
Read the full briefing →