Cybersecurity researchers at ReversingLabs have detailed a supply chain attack on the popular AI library, Ultralytics, which has over 60 million downloads on PyPI. The attack, disclosed on December 4,...
A sophisticated supply chain attack has been identified within the widely-used @solana/web3.js JavaScript library, potentially jeopardizing the security of numerous developers and users within the Solana ecosystem. Malicious code was injected...
Cybersecurity researchers at ReversingLabs have uncovered a stealthy supply chain attack targeting cryptocurrency wallets via the PyPI repository. The malicious package, named aiocpa, posed as a legitimate crypto client tool,...
A recent report from the Checkmarx Security Research Team reveals a sophisticated supply chain attack targeting the NPM ecosystem. The attack involves a malicious package, jest-fet-mock, which uses Ethereum smart...
In a concerning development, cryptocurrency enthusiasts are facing a new and highly invasive malware campaign aimed at draining their wallets and stealing sensitive data. Security researcher Yehuda Gelb from the...
In a sophisticated supply chain attack, malicious actors infiltrated the widely-used JavaScript library lottie-player, injecting code that opens a Web3 wallet connection prompt on legitimate websites. This prompt, if accepted...
A sophisticated and persistent supply chain attack targeting the popular JavaScript library jQuery has been uncovered by cybersecurity researchers at Phylum. The attack, which has been active since late May,...
Rapid7, a prominent cybersecurity firm, has uncovered a sophisticated supply chain attack targeting users of well-known Windows software tools Notezilla, RecentX, and Copywhiz. The attack involves the distribution of trojanized...
WordPress, the world’s most popular content management system, is facing a significant security threat in the form of a widespread supply chain attack. Five popular plugins available on the official...
In a recently uncovered attack campaign, over 170,000 Python developers have fallen victim to a sophisticated malware scheme designed to steal sensitive data. The Checkmarx Security Research Team exposed this...
Ledger, a renowned manufacturer of hardware cryptocurrency wallets, has cautioned its clients about the risks associated with using dApps (decentralized applications), due to a detected supply chain attack. Malefactors infiltrated...