News
"Each published package becomes a new distribution vector: as soon as someone installs it, the worm executes, replicates, and ...
The ShinyHunters extortion group claims to have stolen over 1.5 billion Salesforce records from 760 companies using ...
Cybercriminals use fake troubleshooting websites to trick Mac users into running terminal commands that install Shamos malware through ClickFix tactics.
Reports surfaced that the widely used npm package @ctrl/tinycolor had been compromised by Wormable Malware as part of a ...
Dozens of npm libraries, including a color library with over 2 million downloads a week, have been replaced with novel ...
Google has confirmed that hackers created a fraudulent account in its Law Enforcement Request System (LERS) platform that law ...
A new self-replicating worm dubbed Shai-Hulud has compromised over 180 npm packages, stealing credentials and spreading ...
A new supply chain attack on npm, the node package manager, has injected the first malware with self-replicating worm ...
Chrome extension spyware disguised as a free VPN service highlights security risks after it captured private browsing data ...
A startup called Blacksmith Software Inc. wants to eliminate the inefficiencies around building and testing new software ...
It is possible that the attackers behind this attack are the same ones as last time. Their malicious code bears the name of a prominent science fiction monster.
Some results have been hidden because they may be inaccessible to you
Show inaccessible results