The cybersecurity world is facing a sprawling supply chain compromise as official distribution channels for Checkmarx, a...
supply chain attack
The Python ecosystem is reeling from a sophisticated supply chain attack targeting Xinference (Xorbits Inference), a widely...
The global development community is on high alert following reports of a major security incident at Vercel,...
Security researchers from the OpenSourceMalware (OSM) team have uncovered a massive and rapidly expanding threat campaign targeting...
A new investigative report from Panther has identified a dangerous cluster of malicious packages lurking within the...
The esteemed open-source library @Axios recently fell victim to a sophisticated supply chain incursion in late March,...
Recently, a research contingent published a scholarly treatise detailing an exhaustive security audit of various API aggregators—commonly...
In the world of secure software development, sandboxing is the ultimate safety net—a controlled environment designed to...
Researchers at Socket have identified a massive new cluster of malicious packages linked to North Korea’s notorious...
Security researchers at StepSecurity have sounded the alarm on a compromised version of the @velora-dex/sdk package. On...
Cisco Talos has revealed a major automated credential harvesting campaign, tracked as UAT-10608, that has already compromised...
The digital defenses of the European Union faced a significant test this March as a sophisticated supply-chain...
The esteemed open-source library Axios, a staple of the contemporary industry, recently fell victim to a cyber...
The cybersecurity world is reeling following reports of a massive data breach at Adobe, orchestrated by a...
A trusted communication tool has been turned into a weapon of mass malware distribution. Check Point Research...
The Google Threat Intelligence Group (GTIG) has issued an urgent warning regarding a sophisticated software supply chain...
Security researchers at StepSecurity have issued an emergency warning regarding a high-stakes supply chain attack targeting axios,...
A new and enigmatic threat actor is casting a long shadow over the Middle East’s energy sector....
Jamf Threat Labs has released a new report detailing the evolution of GhostClaw, a sophisticated malware campaign...
The CERT Coordination Center (CERT/CC) has issued a critical security warning regarding GoHarbor’s Harbor, a widely used...