Mini Shai-Hulud Hits TanStack npm Packages With Signed Malware
Mini Shai-Hulud abused trusted publishing to ship malicious TanStack npm packages with…
Checkmarx Jenkins Plugin Compromise Put CI Secrets at Risk
A rogue Checkmarx AST Scanner Jenkins plugin release put CI/CD source code…
Fake OpenAI Hugging Face Repo: Infostealer Warning
HiddenLayer says a fake OpenAI-themed Hugging Face repository copied a privacy-filter model…
Is JDownloader Safe?
JDownloader says attackers changed several official website download links on May 6-7,…
QLNX RAT Targets Linux Developer and Cloud Credentials
Trend Micro reports QLNX, a Linux-focused Quasar RAT variant that combines persistence,…
PyPI ZiChatBot Packages Linked to Suspected OceanLotus Campaign
Kaspersky reports a suspected OceanLotus campaign that used malicious PyPI packages to…
Backdoor:Win64/RogueDaemon.LTSN!MTB: DAEMON Tools Alert and Cleanup
Backdoor:Win64/RogueDaemon.LTSN!MTB is a Microsoft Defender alert linked by users to the DAEMON…
25 Chrome Extensions Compromised, Exposing 2M+ Users
A targeted attack on Chrome extensions publishers compromised the add-ons uploaded to…
AT&T Hacked in April, All Wireless Customers Affected
AT&T, one of the US biggest network operators, confirms a massive data…
XZ Utils Backdoor Discovered, Threating Linux Servers
A backdoor in liblzma library, a part of XZ data compression tool…
Cyber Risk Exposure Management: Definition, Steps, and Metrics
Cyber risk exposure management is the ongoing process of finding, prioritizing, and…
Third-Party Data Breach: Meaning, Examples, and What to Do
A third-party data breach exposes data through a vendor, SaaS app, contractor,…
