A relentless cyber-espionage campaign has expanded its reach into the heart of the AI development ecosystem. Security...
supply chain attack
Security analysts have uncovered a sophisticated firmware-level infection targeting the heart of the Android operating system. A...
Today, security firm Checkmarx has identified a recent supply chain security incident. The breach involved the publication...
In a sophisticated display of “parasitic” engineering, a mysterious new threat has been discovered living within the...
Security researchers at Bitdefender have uncovered a sophisticated cyberattack targeting the developer community through a malicious extension...
Security researchers Reynaldo Vasquez Garcia and Paul Asadoorian from Eclypsium have issued a warning regarding a category...
Security researchers at Proofpoint Threat Research have detailed a novel exploitation method dubbed CursorJack, which targets the...
In a sophisticated supply chain attack discovered by the StepSecurity threat intelligence team, a legitimate Japanese DeFi...
The threat actor known as GlassWorm has significantly escalated its operations, pivoting from simple malicious listings to...
Cybersecurity investigators at Socket’s Threat Research Team have sounded the alarm after discovering a cluster of malicious...
The JavaScript development community is on high alert following a coordinated supply chain attack targeting two popular...
A severe security flaw has been identified in SandboxJS, a popular JavaScript sandboxing library used to safely...
In a sophisticated supply chain manipulation, the xygeni-action GitHub Action was recently targeted by a critical “tag...
The eSentire’s Threat Response Unit (TRU) recently uncovered a sophisticated campaign involving a Remote Access Trojan (RAT)...
The Gogs project, a popular self-hosted Git service prized for its simplicity and painless setup, has been...
Socket’s Threat Research Team has uncovered a sophisticated supply chain attack targeting PHP developers through Packagist, the...
Cybersecurity researchers at Ctrl-Alt-Intel have released a detailed investigation into a systematic campaign targeting the heart of...
Cybersecurity researchers at XLab have issued a major report detailing the re-emergence of Funnull (also known as...
Cybersecurity researchers at Socket have uncovered a sophisticated security breach affecting the popular Aqua Trivy VS Code...
Christopher Robinson, Chief Technology Officer and Chief Security Architect at the Open Source Security Foundation (OpenSSF), has...