CVE-2026-55553: urllib Redirects Can Leak Credentials
A high-severity Node.js urllib flaw can forward authentication headers on cross-origin redirects.…
NUL1DROPPER npm Malware Runs When a Package Is Imported
NUL1DROPPER runs when poisoned npm packages are imported, not through install scripts.…
Keyv npm Worm Poisoned 444 Packages: Check Before Rotating Tokens
The Keyv npm worm poisoned hundreds of packages and can react when…
Adform Script Swapped Crypto Wallet Addresses on Websites
A compromised Adform tracking script could replace Bitcoin, Ethereum, and Tron recipient…
Trojan:JS/ChatGPTStealer!MSR: What It Means and What to Do
Microsoft Defender can flag Trojan:JS/ChatGPTStealer!MSR when a malicious or suspicious JavaScript file…
