A new class of AI security vulnerability is redefining how attackers compromise development pipelines. Dubbed “Comment … GitHub AI Agents Hit by Prompt Injection via CommentsRead more
supply chain attack
Vercel Data Breach: OAuth Attack Exposes Internal Systems
The Vercel data breach has raised serious concerns across the developer and cybersecurity communities. A platform … Vercel Data Breach: OAuth Attack Exposes Internal SystemsRead more
Obsidian Plugin Malware Attack: Hidden Supply Chain Threat
A new wave of Obsidian plugin malware attacks is redefining how attackers weaponize trusted productivity tools. … Obsidian Plugin Malware Attack: Hidden Supply Chain ThreatRead more
Fake Ledger Wallet Scam Steals Crypto Seeds & PINs
Hardware wallets are considered one of the safest ways to store cryptocurrency—but a new supply chain … Fake Ledger Wallet Scam Steals Crypto Seeds & PINsRead more
Hidden Backdoor in Trusted WordPress Plugins Powers 8-Month Supply Chain Attack
A highly sophisticated WordPress supply chain attack has exposed a critical weakness in how plugin ecosystems … Hidden Backdoor in Trusted WordPress Plugins Powers 8-Month Supply Chain AttackRead more
Fake Proxifier Installer on GitHub Spreads ClipBanker Crypto-Stealing Malware
Cryptocurrency users are increasingly being targeted by sophisticated malware campaigns that exploit trust in legitimate software … Fake Proxifier Installer on GitHub Spreads ClipBanker Crypto-Stealing MalwareRead more
36 Malicious npm Strapi Packages Used in Targeted Supply Chain Attack
A sophisticated software supply chain attack has been discovered targeting developers using Strapi. Attackers published 36 … 36 Malicious npm Strapi Packages Used in Targeted Supply Chain Attack Read more
Axios npm Supply Chain Attack: Detection, Risks, and Mitigation Guide
On March 31, 2026, the cybersecurity community faced a major wake-up call when a widely trusted … Axios npm Supply Chain Attack: Detection, Risks, and Mitigation Guide Read more
Adobe Breach Allegation: 13M Support Tickets Exposed
A potential data exposure involving Adobe has raised serious concerns about third-party vendor security and access … Adobe Breach Allegation: 13M Support Tickets Exposed Read more
Backdoored Telnyx Python SDK on PyPI Steals Credentials Across Platforms
A new software supply chain attack has targeted developers after threat actors compromised the Telnyx Python … Backdoored Telnyx Python SDK on PyPI Steals Credentials Across PlatformsRead more