Urgent Alert for DevOps Engineers Microsoft security analysts recently identified an active threat vector targeting modern software...
Credential Theft
Arcane, the popular tool billed as “Modern Docker Management, Designed for Everyone”, has disclosed a severe security...
In a critical security alert for the PHP community, Nils Adermann, Co-Creator of Composer, has issued an...
Threat actors are increasingly abandoning loud, easily identifiable malware in favor of subtle, script-based deceptions. A new...
Microsoft’s Defender Security Research and Threat Intelligence teams have sounded the alarm on a massive, highly sophisticated...
A recent report from Kaspersky Labs reveals a disturbing surge in phishing campaigns leveraging Amazon Simple Email...
Security researchers at Varonis Threat Labs have dissected a new, all-in-one phishing platform dubbed Bluekit that is...
Securonix Threat Research has detailed a sophisticated new Python-based backdoor framework dubbed Deep#Door. This high-tech implant exemplifies...
Security researchers at Socket have uncovered a coordinated software supply chain campaign orchestrated through the GitHub account...
Security researchers have uncovered a supply-chain attack on npm targeting developers who mistakenly install the unscoped tanstack...
In the fast-moving world of AI-assisted development, a significant security oversight has been uncovered in Cursor, a...
The cybersecurity world is facing a sprawling supply chain compromise as official distribution channels for Checkmarx, a...
The Python ecosystem is reeling from a sophisticated supply chain attack targeting Xinference (Xorbits Inference), a widely...
A new and highly efficient threat has emerged on underground cybercrime networks, signaling a significant shift in...
Security researchers at StepSecurity have sounded the alarm on a compromised version of the @velora-dex/sdk package. On...
ThreatLabz has released a deep-dive analysis into the latest iterations of Xloader, a notorious information-stealing malware that...
Cybersecurity researchers at Securonix have detailed the curtain on a sophisticated new threat campaign dubbed FAUX#ELEVATE. The...
A sophisticated and highly automated malware operation is currently flooding GitHub with hundreds of trojanized repositories. Dubbed...
Cybersecurity investigators at Microsoft Defender Experts have sounded the alarm on a deceptive credential theft campaign targeting...
A once-reputable Chrome extension has been caught moonlighting as a sophisticated malware delivery vehicle. ShotBird, a tool...