Russian organizations have been targeted by a cybercrime gang called ExCobalt using a previously unknown Golang-based backdoor known as GoRed.
"ExCobalt focuses on cyber espionage...
Cybersecurity researchers have warned of a new malicious Python package, named pytoileur, discovered in the Python Package Index (PyPI) repository. The package has been...
Cybersecurity researchers have found numerous campaigns targeting Docker Hub by introducing millions of malicious "imageless" containers during the last five years, highlighting the vulnerability...
Reports have surfaced regarding a potential takeover attempt against the OpenJS Foundation, reminiscent of a recent incident aimed at the XZ Utils open-source project.
The...
"Test files" associated with the XZ Utils backdoor have been discovered in a Rust crate called liblzma-sys, according to new findings from Phylum.
liblzma-sys, which...
Microsoft has rolled out security updates for the month of April 2024 addressing a total of 149 vulnerabilities, with two actively exploited flaws. In...
New research has discovered that providers of artificial intelligence (AI) as a service, such as Hugging Face, are vulnerable to two critical risks. These...