A critical security vulnerability has been found in WebdriverIO, a popular open-source test automation framework used for...
supply chain attack
The software supply chain has just weathered another high-impact assault. The Socket Threat Research team has uncovered...
When millions of users rely on a popular utility, the implicit trust placed in its official download...
A highly sophisticated software supply chain attack has compromised tens of thousands of developer workstations and CI/CD...
In a calculated move that signals the expansion of state-sponsored threats into open-source repositories, researchers at Kaspersky...
A previously undocumented Linux remote access trojan (RAT) has been exposed for its surgical precision in targeting...
Kaspersky has uncovered a sophisticated supply chain attack targeting DAEMON Tools, the widely used disk imaging software....
Security researchers at Socket have uncovered a coordinated software supply chain campaign orchestrated through the GitHub account...
In a high-impact escalation of software supply chain attacks, security researchers have identified a major compromise of...
Security researchers have uncovered a supply-chain attack on npm targeting developers who mistakenly install the unscoped tanstack...
Security researchers at Socket have identified a major expansion of the “Mini Shai-Hulud” supply chain campaign, which...
Researchers at ReversingLabs (RL) have uncovered a campaign dubbed PromptMink. Attributed to the North Korean-linked group Famous...
Security researchers at Iru have detailed a sophisticated new threat targeting macOS users through the software supply...
Security researchers at Yeeth Security have uncovered a sophisticated campaign on the Open VSX marketplace, where a...
Security researchers have sounded the alarm on a precision-targeted supply-chain compromise striking the SAP developer ecosystem. The...
Cybersecurity researchers at Panther Threat Research have released a detailed exposé on a massive, coordinated npm malware...
Checkmarx, a global leader in application security testing, has disclosed a significant breach of its internal systems....
Vimeo, the global video hosting giant, announced it has been swept up in a security incident involving...
The password management world was rocked this week as researchers from Socket revealed a major supply chain...
A new report from researchers at TrendMicro has exposed the evolution of Void Dokkaebi (also known as...