Cyberveille
curated by Decio
Nuage de tags
Mur d'images
Quotidien
Rechercher
Flux RSS
Flux RSS
Daily Feed
Weekly Feed
Monthly Feed
tags
search
You're Invited: Delivering malware via Google Calendar invites and PUAs
RATatouille: A Malicious Recipe Hidden in rand-user-agent (Supply Chain Compromise)
XRP supply chain attack: Official NPM package infected with crypto stealing backdoor
npm Malware Targets Telegram Bot Developers with Persistent SSH Backdoors
Malware found on npm infecting local package with reverse shell
A new playground: Malicious campaigns proliferate from VSCode to npm
Supply Chain Attack on Rspack npm Packages Injects Cryptojac...
Fake AWS Packages Ship Command and Control Malware In JPEG Files
Persistent npm Campaign Shipping Trojanized jQuery
Malicious NPM Packages Exfiltrate Hundreds of Developer SSH Keys via GitHub
Dozens of npm Packages Caught Attempting to Deploy Reverse Shell
Developers Warned of Malicious PyPI, NPM, Ruby Packages Targeting Macs - SecurityWeek
Nascent Malware Campaign Targets npm, PyPI, and RubyGems Developers
An Ongoing Open Source Attack Reveals Roots Dating Back To 2021
Fake Roblox packages target npm with Luna Grabber information-stealing malware
Operation Brainleeches: Malicious npm packages fuel supply chain and phishing attacks
Hijacking S3 Buckets: New Attack Technique
Who Broke NPM?: Malicious Packages Flood Leading to Denial of Service
Phylum Detects Ongoing Typosquat/Ransomware Campaign in PyPI and NPM
Threat Alert: Private npm Packages Disclosed via Timing Attacks
Software Supply Chain Attackers; Organized, Persistent, and Operating for over a Year
npm Supply Chain Attack Targeting Germany-Based Companies
Sabotage: Code added to popular NPM package wiped files in Russia and Belarus | Ars Technica