Security researchers at StepSecurity have sounded the alarm on a compromised version of the @velora-dex/sdk package. On...
supply chain attack
Cisco Talos has revealed a major automated credential harvesting campaign, tracked as UAT-10608, that has already compromised...
The digital defenses of the European Union faced a significant test this March as a sophisticated supply-chain...
The esteemed open-source library Axios, a staple of the contemporary industry, recently fell victim to a cyber...
The cybersecurity world is reeling following reports of a massive data breach at Adobe, orchestrated by a...
A trusted communication tool has been turned into a weapon of mass malware distribution. Check Point Research...
The Google Threat Intelligence Group (GTIG) has issued an urgent warning regarding a sophisticated software supply chain...
Security researchers at StepSecurity have issued an emergency warning regarding a high-stakes supply chain attack targeting axios,...
A new and enigmatic threat actor is casting a long shadow over the Middle East’s energy sector....
Jamf Threat Labs has released a new report detailing the evolution of GhostClaw, a sophisticated malware campaign...
The CERT Coordination Center (CERT/CC) has issued a critical security warning regarding GoHarbor’s Harbor, a widely used...
A relentless cyber-espionage campaign has expanded its reach into the heart of the AI development ecosystem. Security...
Security analysts have uncovered a sophisticated firmware-level infection targeting the heart of the Android operating system. A...
Today, security firm Checkmarx has identified a recent supply chain security incident. The breach involved the publication...
In a sophisticated display of “parasitic” engineering, a mysterious new threat has been discovered living within the...
Security researchers at Bitdefender have uncovered a sophisticated cyberattack targeting the developer community through a malicious extension...
Security researchers Reynaldo Vasquez Garcia and Paul Asadoorian from Eclypsium have issued a warning regarding a category...
Security researchers at Proofpoint Threat Research have detailed a novel exploitation method dubbed CursorJack, which targets the...
In a sophisticated supply chain attack discovered by the StepSecurity threat intelligence team, a legitimate Japanese DeFi...
The threat actor known as GlassWorm has significantly escalated its operations, pivoting from simple malicious listings to...
Cybersecurity investigators at Socket’s Threat Research Team have sounded the alarm after discovering a cluster of malicious...
The JavaScript development community is on high alert following a coordinated supply chain attack targeting two popular...