At a Glance Actor Unattributed; infrastructure overlaps with DPRK-linked activity (Wiz) Activity Software supply chain attack via...
supply chain attack
Domestic mini PC manufacturer GEEKOM was recently discovered to be distributing driver downloads through its official website...
At a glance Malware family ChainDrop (Shai-Hulud code lineage) Threat actor Unattributed; possible link to TeamPCP (not...
At a Glance Malware family API-driven XSS supply chain implant (Biggopti banner abuse) Threat actor Suspected; linked...
At a Glance Attribute Detail Malware family FDMTP implant (.NET, TouchSocket-based) Threat actor Suspected Twill Typhoon (not...
At a glance Malware family XCSSET (version 40) Threat actor Unattributed; tracked by Unit 42 since 2020,...
At a glance Field Detail Malware family Modified XMRig 6.25.0 botnet implant (marked “PRIVATE VERSION FOR BOTNET”),...
Adform, a prominent European advertising technology enterprise, recently disclosed a severe security breach. Hackers successfully compromised the...
At a glance Malware family Shai-Hulud variant (“Mini Shai-Hulud”) Threat actor Unattributed; linked to the Shai-Hulud lineage...
At a glance Actor DPRK-linked group (Sapphire Sleet, Stardust Chollima, BlueNoroff, UNC1069) Activity NPM supply chain compromise...
At a glance Actor or group Kimsuky, a North Korea-linked group also tracked as Springtail, Thallium and...
At a Glance Actor or group Unattributed threat actor; no group name published Activity type GitHub Actions...
At a Glance Malware family Braintree.Net typosquat, a multi-stage .NET implant with a companion harvester (DependencyInjector.Core) Threat...
At a Glance Actor / group Suspected North Korean actors in the Contagious Interview / Famous Chollima...
At a glance Actor TeamPCP Activity type Software supply chain compromise Targets Enterprise developers, security tools Scale...
At a glance Actor Suspected North Korean Lazarus-linked group (attribution by TTP similarity) Activity npm supply chain...
At a Glance Organization LastPass (via vendor Klue) Data exposed CRM contact and support data: names, emails,...
Security researchers have uncovered GlassWASM malware, a stealthy threat hiding inside trojanized Visual Studio Code extensions. Socket’s...
A sweeping Mastra supply chain attack has hit the JavaScript ecosystem hard. Security firm Socket detected the...
A dangerous ShapedPlugin supply chain attack is currently threatening WordPress websites. Security researchers at Wordfence discovered this...
A serious Uncanny Automator breach has exposed customer data and pushed a malicious plugin update to live...
Overview of the Global Fraud Threat Cybersecurity researchers have just detected a dangerous software campaign targeting Python...