TrapDoor spread 34 malicious packages across npm, PyPI, and Crates.io, stealing developer credentials and enabling persistence.
GlassWorm poisoned 300 GitHub repositories since 2025, enabling supply chain attacks against developers and organizations.
Hackers are now abusing ChatGPT to generate malicious webpages that trick unsuspecting users into downloading malware onto their machines.
Hackers are exploiting an authentication bypass vulnerability (CVE-2026-35616) in FortiClient Enterprise Management Server (EMS) to deliver an undocumented credential stealer called EKZ. The attacker ...
Threat actors are targeting systems with high-performance computers in an ongoing cryptojacking campaign spread through a ...
Bumblebee from Perplexity scans developer machines for compromised packages and AI tool configs, without triggering malware.
Rachel Williams has been an editor for nearly two decades. She has spent the last five years working on small business content to help entrepreneurs start and grow their businesses. She’s well-versed ...
Blockchain security firm SlowMist warns of a cross-registry supply chain campaign targeting developers in the Solana, decentralized finance, and AI sectors to siphon private keys.
Some results have been hidden because they may be inaccessible to you
Show inaccessible results