Live stack monitoring for frameworks, packages, and vendor incidents
Feed synced 2h agoSecurity news for developers, not just security teams.
HackTribune turns supply-chain incidents, framework advisories, and malicious package reports into searchable incident pages, watchlists, and upgrade-worthy alerts.
12,174
incidents tracked
1,696
exploited in the wild
13
ecosystems covered
Verified against official advisory sources
Latest incidents
View all →UNKNOWNunknown
Introducing context-aware vulnerability discovery and remediation with Cloudflare Managed Defense and OpenAI Daybreak models
UNKNOWNunknown
Why are European countries moving their gold out of North America?
UNKNOWNPyPI
Malicious code in dbt-sa-cli (PyPI)
Malicious code in dbt-sa-cli (PyPI)
UNKNOWNunknown
CVE-2026-85787 - An incomplete list of disallowed inputs in the SQL validation component in Amazon awslabs postgres-mcp-server to modify data beyond the read-only scope
UNKNOWNunknown
CVE-2026-85654 - Code injection in the CDK generator in Amazon awslabs.dynamodb-mcp-server
UNKNOWNunknown