CISA Flags Critical Apache OFBiz Flaw Amid Active Exploitation Reports
Aug 28, 2024Ravie LakshmananSoftware Security / Vulnerability The U.S. Cybersecurity and Infrastructure…
GitHub Vulnerability ‘ArtiPACKED’ Exposes Repositories to Potential Takeover
Aug 15, 2024Ravie LakshmananCloud Security / DevOps A newly discovered attack vector…
Rogue PyPI Library Solana Users, Steals Blockchain Wallet Keys
Aug 11, 2024Ravie LakshmananSupply Chain / Software Security Cybersecurity researchers have discovered…
SocGholish Malware Exploits BOINC Project for Covert Cyberattacks
Jul 22, 2024NewsroomVulnerability / Malware The JavaScript downloader malware known as SocGholish…
GitHub Token Leak Exposes Python’s Core Repositories to Potential Attacks
Jul 15, 2024NewsroomSupply Chain Attack / Cyber Threat Cybersecurity researchers said they…
60 New Malicious Packages Uncovered in NuGet Supply Chain Attack
Jul 11, 2024NewsroomSoftware Security / Threat Intelligence Threat actors have been observed…
Trojanized jQuery Packages Found on npm, GitHub, and jsDelivr Code Repositories
Jul 09, 2024NewsroomSupply Chain Attack / Web Security Unknown threat actors have…
Most critical open source projects not using memory safe code
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has published research looking…