GitHub is just the latest victim of TeamPCP, a gang that has carried out a spree of software supply chain attacks that has impacted hundreds of organizations.
Hackers claim to be selling Dynatrace GitHub data, including source code, employee details, and infrastructure information.
Last Tuesday, Microsoft patched a vulnerability it rated as max critical in its M365 Copilot AI platform. On Monday, the ...
Security researchers turned the chatbot into a "one-click data exfiltration weapon." The post Microsoft’s Copilot AI Caught ...
Microsoft shut down dozens of GitHub code repositories for Azure and AI coding tools after a reported hack.
The attacks are part of a wider campaign known as Mini Shai-Hulud, which has already compromised several open source projects and, in turn, developers and companies that use them.
Proofpoint says UNK_DeadDrop sent 250+ phishing emails to nearly 100 firms, using GitHub and VS Code lures to steal ...
Hackers are exploiting a recent accidental source code leak from Anthropic to spread Vidar infostealer malware via fake GitHub repositories. These malicious sites have even managed to appear in top ...
Microsoft has removed dozens of GitHub repositories after a malware scare. The affected projects may have exposed users to ...
To reach protected secrets, the macOS and Linux versions show a fake password dialog, then reuse the captured password to ...
Novo Nordisk A/S NVO is investigating claims by cyber extortion group FulcrumSec, which alleges it stole more than a terabyte ...