All posts tagged "supply chain attack"
-
Security
/ 4 weeks agoNotepad++ Patches Security Flaw in Update System
The developers of the widely used text editor Notepad++ have released a critical security update to address a vulnerability that allowed...
-
Security
/ 4 weeks agoTrojanized Oura MCP Server Deploys StealC Infostealer
cybersecurity researchers have identified a new campaign distributing the SmartLoader malware, which uses a trojanized version of a legitimate Model Context...
-
Security
/ 4 weeks agoAndroid Tablet Firmware Backdoor Found in Signed Updates
Security researchers have discovered a sophisticated backdoor embedded within the firmware of several Android tablet brands. The malware, which is distributed...
-
Security
/ 1 month agoLazarus Group Targets npm, PyPI with Malicious Software Packages
cybersecurity researchers have identified a new series of malicious software packages within the npm and Python Package Index (PyPI) ecosystems. These...
-
Security
/ 1 month agoFirst Malicious Outlook Add-In Steals Thousands of Credentials
cybersecurity researchers have identified the first known malicious Microsoft Outlook add-in actively used in attacks, a novel supply chain compromise that...
-
Security
/ 1 month agoCompromised dYdX npm and PyPI Packages Deliver Malware
Cybersecurity researchers have identified a software supply chain attack targeting developers working with the dYdX decentralized exchange. Malicious actors have compromised...
-
Security
/ 1 month agoOpen VSX Registry Hit by Supply Chain Attack Spreading GlassWorm
cybersecurity researchers have disclosed a software supply chain attack targeting the Open VSX Registry, a popular marketplace for open-source development tools....
-
Security
/ 1 month agoeScan Antivirus Update Servers Hacked to Spread Malware
The update infrastructure for eScan antivirus, a security product from Indian cybersecurity firm MicroWorld Technologies, has been compromised by unknown attackers....
-
Security
/ 1 month agoNotepad++ Update System Hijacked in Targeted Attack
The developer of the widely used Notepad++ text editor has disclosed that the software’s official update mechanism was compromised, allowing attackers...
-
Security
/ 1 month ago341 Malicious ClawHub Skills Expose OpenClaw Users to Data Theft
A recent security audit has uncovered hundreds of malicious third-party extensions, known as “skills,” within the ClawHub marketplace, posing a significant...

