HomeTagsSupply chain attack

Tag: supply chain attack

ExCobalt Cyber Gang Strikes Russian Sectors with Latest GoRed Backdoor Attack

Russian organizations have been targeted by a cybercrime gang called ExCobalt using a previously unknown Golang-based backdoor known as GoRed. "ExCobalt focuses on cyber espionage...

Cybercriminals Exploit StackOverflow to Push Dangerous Python Package

Cybersecurity researchers have warned of a new malicious Python package, named pytoileur, discovered in the Python Package Index (PyPI) repository. The package has been...

Over the past 5 years, Docker Hub has been infiltrated by millions of malicious containers without images

Cybersecurity researchers have found numerous campaigns targeting Docker Hub by introducing millions of malicious "imageless" containers during the last five years, highlighting the vulnerability...

Potential Takeover Attempt Targeting OpenJS Foundation’s JavaScript Project

Reports have surfaced regarding a potential takeover attempt against the OpenJS Foundation, reminiscent of a recent incident aimed at the XZ Utils open-source project. The...

Rust Crate liblzma-sys Infected with XZ Utils Backdoor Files, Putting Users at Risk

"Test files" associated with the XZ Utils backdoor have been discovered in a Rust crate called liblzma-sys, according to new findings from Phylum. liblzma-sys, which...

Microsoft Addresses 149 Vulnerabilities in Extensive April Update, Including Zero-Day Threats

Microsoft has rolled out security updates for the month of April 2024 addressing a total of 149 vulnerabilities, with two actively exploited flaws. In...

AI-as-a-Service Providers at Risk of Privilege Escalation and Cross-Tenant Attacks

New research has discovered that providers of artificial intelligence (AI) as a service, such as Hugging Face, are vulnerable to two critical risks. These...

Must Read