North Korea-aligned threat actors are updating their malicious toolsets to target software developers globally. Specifically, TrendAI Research...
developer security
Cybercriminals are currently targeting software engineers with advanced social engineering tactics. Specifically, threat actors launched a highly...
Security researchers at Iru have detailed a sophisticated new threat targeting macOS users through the software supply...
Cybersecurity researchers at Panther Threat Research have released a detailed exposé on a massive, coordinated npm malware...
In a calculated move that signals a new frontier in cyber espionage, North Korean threat actors have...
A sophisticated, high-severity social engineering campaign is currently targeting the open source developer community. The attack, which...
The cybersecurity firm OX Security recently promulgated a report exposing an insidious cryptocurrency artifice targeting the OpenClaw...
Security researchers at Proofpoint Threat Research have detailed a novel exploitation method dubbed CursorJack, which targets the...
Security researchers have exposed a devastating vulnerability in TinaCMS, a popular headless content management system used by...
A recent report from Microsoft Defender Experts sheds light on the “Contagious Interview” campaign, a sophisticated social...
The job hunt just got a lot more dangerous for software engineers. Microsoft Defender Experts identified a...
A wildly popular tool designed to make web development easier is currently harboring a massive security blind...
The viral popularity of AI coding assistants has attracted a new kind of predator. On January 27,...
It looked like just another UI library. “ansi-universal-ui” promised to be a “lightweight, modular UI component system...
The KONNI APT group, a threat actor historically aligned with North Korean interests, has launched a sophisticated...
A disturbing new tactic has emerged in the Linux software ecosystem, turning trusted developer accounts into vehicles...
Developers relying on orval to generate type-safe clients from OpenAPI specifications are being urged to update immediately...
The “Contagious Interview” campaign, a sophisticated cyber-espionage operation attributed to North Korean (DPRK) threat actors, has evolved...
The tools that software developers trust most are being turned against them in a sophisticated new malware...
Developers using the Spring CLI extension for Visual Studio Code are being urged to clean up their...