Cybersecurity researchers have shed light on a cross-platform malware called RemotePE that has been put to use...
The Hacker News
A new coordinated cross-ecosystem software supply chain attack campaign has targeted npm, PyPI, and Crates.io to distribute...
GitHub has rolled out new controls for npm to improve the security of the software supply chain,...
A new "coordinated" supply chain attack campaign has impacted eight packages on Packagist including malicious code designed...
Anthropic on Friday disclosed that Project Glasswing has helped uncover more than 10,000 high- or critical-severity vulnerabilities...
Cybersecurity researchers have flagged a fresh software supply chain attack campaign that has targeted multiple PHP packages...
A maximum-severity security vulnerability impacting LiteSpeed User-End cPanel Plugin has come under active exploitation in the wild.
The...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a recently patched critical security flaw impacting...
Authorities in Europe and North America have announced the dismantling of a criminal virtual private network (VPN)...
The Belarus-aligned threat actor known as Ghostwriter (aka UAC-0057 and UNC1151Ukraine's National Security and Defense Council) has...