Autonomous AI development tools are introducing architectural vulnerabilities directly to developer workstations. Security researchers at Mitiga … How This Claude Code Flaw Exposes Critical SaaS TokensRead more
supply chain attack
Hola Browser Supply Chain Attack Delivers Hidden Cryptominer
A Hola Browser supply chain attack has exposed a troubling weakness in software distribution pipelines after … Hola Browser Supply Chain Attack Delivers Hidden CryptominerRead more
Magecart Attack Abuses Stripe as Hidden Malware Channel
A sophisticated Magecart Stripe attack is redefining how credit card skimming campaigns operate—by turning trusted payment … Magecart Attack Abuses Stripe as Hidden Malware ChannelRead more
Malicious PyPI Package Exploits Typosquatting to Deploy Backdoor
A malicious PyPI package designed to mimic a widely used Python library has exposed thousands of … Malicious PyPI Package Exploits Typosquatting to Deploy BackdoorRead more
Massive npm Supply Chain Attack Targets Red Hat Packages
A large-scale npm supply chain attack has compromised dozens of official packages under the @redhat-cloud-services scope, … Massive npm Supply Chain Attack Targets Red Hat PackagesRead more
North Korean Hackers Exploit Packagist to Target PHP Developers
A sophisticated software supply chain attack linked to the Famous Chollima Packagist attack has exposed a … North Korean Hackers Exploit Packagist to Target PHP DevelopersRead more
TamperedChef Malware Hides Stealth Attacks Inside Signed Apps
One of the most aggressive supply chain attacks in recent memory has struck the developer ecosystem. … TamperedChef Malware Hides Stealth Attacks Inside Signed AppsRead more
Megalodon Attack Injects Backdoors Into 5,500+ GitHub Repositories
One of the most aggressive supply chain attacks in recent memory has struck the developer ecosystem. … Megalodon Attack Injects Backdoors Into 5,500+ GitHub RepositoriesRead more
npm Resets Tokens After “Mini Shai-Hulud” Supply Chain Attack
A large-scale software supply chain attack has forced npm to take unprecedented action, resetting thousands of … npm Resets Tokens After “Mini Shai-Hulud” Supply Chain AttackRead more
Steam Malware Attack: How Fake Games Steal Your Data
Gamers trust platforms like Steam to provide safe and verified content. But what happens when that … Steam Malware Attack: How Fake Games Steal Your DataRead more