I built a scanner to identify possibly affected projects: github.com/mlowdi/chain...
I built a scanner to identify possibly affected projects: github.com/mlowdi/chain...
gomoot.com/drop-la-sand...
#drop #gvisor #kernel #Linux #opensource #sandbox
gomoot.com/drop-la-sand...
#drop #gvisor #kernel #Linux #opensource #sandbox
www.stepsecurity.io/blog/chaindr...
socket.dev/blog/popular...
safedep.io/keyv-npm-sup...
www.stepsecurity.io/blog/chaindr...
socket.dev/blog/popular...
safedep.io/keyv-npm-sup...
The worm steals credentials and self-spreads through trusted releases.
🔗 read more: www.bleepingcomputer...
#ransomNews #cybersecurity
The worm steals credentials and self-spreads through trusted releases.
🔗 read more: www.bleepingcomputer...
#ransomNews #cybersecurity
Es propaga per tarballs i hooks de VS Code/Claude Code.
Només cal obrir una branca infectada per ser-ne victima.
www.theregister.com/security/202...
Si en vols saber més: ls-lisa.com/enverinament...
Es propaga per tarballs i hooks de VS Code/Claude Code.
Només cal obrir una branca infectada per ser-ne victima.
www.theregister.com/security/202...
Si en vols saber més: ls-lisa.com/enverinament...
#Cybersecurity #SupplyChainSecurity #SoftwareSecurity #npm #JavaScript #DevSecOps #CICD #CloudSecurity #ThreatIntelligence #OpenSource #ApplicationSecurity
www.microsoft.com/en-us/securi...
#Cybersecurity #SupplyChainSecurity #SoftwareSecurity #npm #JavaScript #DevSecOps #CICD #CloudSecurity #ThreatIntelligence #OpenSource #ApplicationSecurity
www.microsoft.com/en-us/securi...
Main Link | Techmeme Permalink
Main Link | Techmeme Permalink
This article frames the ongoing security landscape as a series of disparate, high-stakes incidents rather than pointing toward an emerging, unified systemic risk from autonomous AI agents. While specific attacks are alarming,…
This article frames the ongoing security landscape as a series of disparate, high-stakes incidents rather than pointing toward an emerging, unified systemic risk from autonomous AI agents. While specific attacks are alarming,…
www.stepsecurity.io/blog/chaindr...
www.stepsecurity.io/blog/chaindr...
-OpenAI disrupts Cambodian scam center
-SMS blaster detained in Hong Kong
-Malware moves to D2IP connections
-FBI issues new swatting alert
-AI is prevalent in African cybercrime
-Malicious links found in AI summaries
-ChainDrop worm hits npm
-OpenAI disrupts Cambodian scam center
-SMS blaster detained in Hong Kong
-Malware moves to D2IP connections
-FBI issues new swatting alert
-AI is prevalent in African cybercrime
-Malicious links found in AI summaries
-ChainDrop worm hits npm
The campaign shows how attackers can abuse trusted open-source dependencies to steal developer credentials and spread through the software supply chain.
🔗 netbe.pl/chaindrop-ho...
#Cybersecurity #npm #Malware
The campaign shows how attackers can abuse trusted open-source dependencies to steal developer credentials and spread through the software supply chain.
🔗 netbe.pl/chaindrop-ho...
#Cybersecurity #npm #Malware
https://lwn.net/Articles/1087108/
#opensource #Linux
https://lwn.net/Articles/1087108/
#opensource #Linux