
Cybersecurity Threats Report: Supply Chain Attacks, iCloud Private Relay Vulnerability, and ColdCard Wallet Issues
On August 6, 2026, the SANS Internet Storm Center Stormcast reported on multiple cybersecurity threats, including a supply chain compromise affecting two widely used npm libraries (V and cachable) that provide caching functionality. The malware exfiltrates GitHub keys and checks their validity, executing additional malicious actions—such as file destruction—if keys are revoked, though it remains inactive if the system is offline. Researcher Ronaldo developed a mitigation tool that analyzes infections without loading external dependencies, using only built-in NodeJS libraries. Additionally, a vulnerability in Apple’s iCloud Private Relay was disclosed, where WebKit-based browsers (including Chrome and Firefox on iOS) leak IP addresses when interacting with passkey-enabled websites, as authentication requests bypass the proxy. ColdCard cryptocurrency wallet users faced ongoing issues, including firmware updates that risked rendering funds inaccessible and a phishing campaign using domains like coldcart-teamsnews.com to distribute malicious audit guides. The video also referenced a prior Apple Gatekeeper vulnerability and emphasized the limitations of browser-based VPNs compared to system-wide solutions.