thumbnail Using Trusted Protocols Against You: Gmail as a C2 Mechanism...
thumbnail Carding tool abusing WooCommerce API downloaded 34K times on PyPI
thumbnail Malware found on npm infecting local package with reverse shell
thumbnail Fake recruiter coding tests target devs with malicious Python packages
thumbnail Cybercriminals pose as "helpful" Stack Overflow users to push malware
thumbnail Malicious PyPI packages targeting highly specific MacOS machines
thumbnail PyPI halted new users and projects while it fended off supply-chain attack
thumbnail Malicious NPM Packages Exfiltrate Hundreds of Developer SSH Keys via GitHub
thumbnail Three New Malicious PyPI Packages Deploy CoinMiner on Linux Devices | FortiGuard Labs
thumbnail A pernicious potpourri of Python packages in PyPI
thumbnail Uncovering thousands of unique secrets in PyPI packages
thumbnail The evolutionary tale of a persistent Python threat 
thumbnail Six Malicious Python Packages in the PyPI Targeting Windows Users
thumbnail Operation Brainleeches: Malicious npm packages fuel supply chain and phishing attacks
thumbnail Python packages upload your AWS keys, env vars, secrets to the web
thumbnail Google Online Security Blog: The Package Analysis Project: Scalable detection of malicious open source packages