GitHub has addressed a critical vulnerability in the GitHub Enterprise Server (GHES) that had the potential to allow attackers to bypass authentication protections.
Known as...
Reports have surfaced regarding a potential takeover attempt against the OpenJS Foundation, reminiscent of a recent incident aimed at the XZ Utils open-source project.
The...
"Test files" associated with the XZ Utils backdoor have been discovered in a Rust crate called liblzma-sys, according to new findings from Phylum.
liblzma-sys, which...
Red Hat on Friday released an "urgent security alert" warning that two versions of a popular data compression library called XZ Utils (previously LZMA...
There has been a sophisticated attack campaign orchestrated by unidentified adversaries impacting several individual developers and the GitHub organization account linked with Top.gg, a...
Cybersecurity researchers have uncovered several GitHub repositories that offer cracked software used to distribute an information stealer called RisePro.
The operation, known as gitgub, involves...