Malicious packages found in RubyGems repository again
Update: RubyGems faced another large malicious-package incident in 2026, when new account…
SolarWinds was hacked because its credentials were publicly available on GitHub
Earlier this week was reported a massive attack on the supply chain…
Researchers discovered four npm packages that were collecting user data
Sonatype identified four npm packages that collected and sent to their creator's…
DeepSource Developers Talked about Hacking of Their GitHub Application
A popular automated code analysis tool, DeepSource, is designed to identify vulnerabilities,…
Google Unveiled a Source Code for Tsunami Vulnerability Scanner
Google has unveiled the source code for the Tsunami scanner, a scalable…
GitHub will replace the term “master” with a more neutral one
Nat Friedman, leading GitHub after acquiring Microsoft in 2018, said on Twitter…
Octopus Scanner Malware Found On GitHub
GitHub developers have issued a warning about the appearance of the new…
GitHub warned users about phishing attack
Representatives of the GitHub web service warned users of a massive phishing…
