All posts tagged "supply chain attack"
-
Security
/ 2 months agoNorth Korean Hackers Deploy Malicious npm Packages in Global Campaign
cybersecurity researchers have identified a new phase of a persistent cyber espionage campaign, attributed to North Korean state-sponsored actors, involving the...
-
Security
/ 3 months agoMalicious NuGet Package Impersonates Stripe Library to Steal Tokens
cybersecurity researchers have disclosed a new malicious software package found on the NuGet Gallery, a major repository for .NET developers. The...
-
Security
/ 3 months agoMicrosoft Warns of Fake Next.js Job Repos Spreading Malware
Microsoft has issued a warning to software developers about a coordinated campaign using fake job listings and counterfeit code repositories to...
-
Security
/ 3 months agoMalicious NuGet Packages Target ASP.NET Developers, Steal Data
cybersecurity researchers have identified a new campaign involving four malicious packages on the NuGet repository, a key software library for .NET...
-
Security
/ 3 months agoMalicious npm Packages Steal Crypto Keys and API Tokens
cybersecurity researchers have identified an ongoing software supply chain attack targeting developers through the npm registry. The campaign, active as of...
-
Security
/ 3 months agoCline CLI Supply Chain Attack Installs OpenClaw Malware
An open-source coding assistant tool was compromised in a software supply chain attack, leading to the unauthorized installation of a popular...
-
Security
/ 3 months agoNotepad++ Patches Security Flaw in Update System
The developers of the widely used text editor Notepad++ have released a critical security update to address a vulnerability that allowed...
-
Security
/ 3 months agoTrojanized Oura MCP Server Deploys StealC Infostealer
cybersecurity researchers have identified a new campaign distributing the SmartLoader malware, which uses a trojanized version of a legitimate Model Context...
-
Security
/ 3 months agoAndroid Tablet Firmware Backdoor Found in Signed Updates
Security researchers have discovered a sophisticated backdoor embedded within the firmware of several Android tablet brands. The malware, which is distributed...
-
Security
/ 3 months agoLazarus Group Targets npm, PyPI with Malicious Software Packages
cybersecurity researchers have identified a new series of malicious software packages within the npm and Python Package Index (PyPI) ecosystems. These...

