Cybersecurity researchers at Socket have uncovered a sophisticated multi-stage malware operation, dubbed “StegaBin,” specifically designed to harvest...
supply chain attack
Socket’s Threat Research Team recently uncovered a dangerous new supply chain attack: a malicious Go programming module...
Late last year, the cybersecurity community was put on high alert when the ReversingLabs research team uncovered...
Tenable Research has uncovered a highly sophisticated, malicious npm package that amassed approximately 50,000 downloads before its...
The job hunt just got a lot more dangerous for software engineers. Microsoft Defender Experts identified a...
Developers themselves are increasingly the primary target for cybercriminals, a new supply chain attack has been uncovered...
A highly active cybercriminal group is turning legitimate websites into traps, deploying a potent mix of fake...
Researchers at Kaspersky Labs have uncovered a massive, firmware-level compromise affecting Android devices globally. Dubbed Keenadu, this...
A new report from Unit 42 has exposed a highly targeted supply chain attack that turned one...
In a disturbing first for enterprise security, researchers at Koi Security have uncovered a malicious Microsoft Outlook...
The notorious North Korean hacking syndicate, Lazarus Group, has launched a new, highly sophisticated branch of its...
A sophisticated supply chain attack has struck the dYdX decentralized exchange protocol, injecting malicious code into official...
The notorious Chinese state-sponsored threat group Lotus Blossom has resurfaced with a dangerous new toolkit, compromising the...
A sophisticated supply chain attack has struck the open-source ecosystem, leveraging compromised developer credentials to inject malware...
The booming ecosystem of personal AI agents has hit its first major security speed bump. VirusTotal has...
The developer behind Notepad++, the ubiquitous open-source text editor found on millions of developer desktops, has confirmed...
Security researchers at Morphisec have uncovered a massive compromise affecting eScan, an enterprise antivirus solution developed by...
The viral popularity of AI coding assistants has attracted a new kind of predator. On January 27,...
In a clever twist on software supply chain attacks, threat actors are weaponizing a quirk in GitHub’s...
It looked like just another UI library. “ansi-universal-ui” promised to be a “lightweight, modular UI component system...