All posts tagged "supply chain attack"
-
Security
/ 2 hours agoCybersecurity Bulletin Highlights PAN-OS RCE, cURL Bug, and More
A new cybersecurity threat digest has detailed a series of active vulnerabilities and attacks, including a critical remote code execution flaw...
-
Security
/ 3 hours agoMalicious Code Found in Three Node-IPC Package Versions
Cybersecurity researchers have issued warnings about malicious activity discovered in newly published versions of the widely used Node IPC package. The...
-
Security
/ 2 days agoRubyGems Attack Uses 150+ Packages for Data Theft
cybersecurity researchers have uncovered a campaign targeting the RubyGems repository, involving more than 150 malicious packages. The operation, named GemStuffer by...
-
Security
/ 3 days agoSupply Chain Attack Campaign Targets Tech and AI Firms
A coordinated Supply chain attack campaign has compromised software packages belonging to several prominent technology and artificial intelligence companies, including TanStack,...
-
Security
/ 4 days agoFake OpenAI Privacy Filter Tops Hugging Face, Steals Windows Data
A fraudulent repository on the Hugging Face platform climbed to the number one spot on the trending list by posing as...
-
Security
/ 7 days agoLinux Malware Targets Developer Credentials in Supply Chain Attack
A newly identified Linux malware, known as Quasar Linux RAT (QLNX), is actively targeting software developers to steal credentials and compromise...
-
Security
/ 1 week agoPyPI Packages Deliver ZiChatBot Malware via Zulip APIs
cybersecurity researchers have identified three malicious packages uploaded to the Python Package Index (PyPI) repository. These packages are designed to covertly...
-
Security
/ 1 week agoDAEMON Tools Supply Chain Attack Delivers Malware via Official Installers
A newly identified supply chain attack targeting the popular disc emulation software DAEMON Tools has compromised its official installers to deliver...
-
Security
/ 1 week agoNorth Korean Group Targets Gamers in Supply Chain Attack
A state-sponsored hacking group aligned with North Korea known as <a href="https://delimiter.online/blog/APT37-facebook-rokrat/” title=”ScarCruft”>ScarCruft has compromised a video game platform in a...
-
Security
/ 2 weeks agoNew Supply Chain Attack Uses Ruby Gems And Go Modules
A new software supply chain attack campaign has been observed targeting development infrastructure. Threat actors deployed so called sleeper packages to...

