Tag: supply chain attack

Chinese Volt Typhoon Exploits Versa Director Flaw, Targets U.S. and Global...

The China-nexus cyber espionage group tracked as Volt Typhoon has been attributed with moderate confidence to the zero-day exploitation of a recently disclosed high-severity...

Hardware Backdoor Discovered in RFID Cards Used in Hotels and Offices...

Cybersecurity researchers have uncovered a hardware backdoor within a particular model of MIFARE Classic contactless cards that could allow authentication with an unknown key...

Rogue PyPI Library Solana Users, Steals Blockchain Wallet Keys

Cybersecurity researchers have discovered a new malicious package on the Python Package Index (PyPI) repository that masquerades as a library from the Solana blockchain...

Malicious PyPI Package Targets macOS to Steal Google Cloud Credentials

Cybersecurity researchers have discovered a malicious package on the Python Package Index (PyPI) repository that targets Apple macOS systems with the goal of stealing...

OpenJS Basis Focused in Potential JavaScript Challenge Takeover Try

Safety researchers have uncovered a "credible" takeover try focusing on the OpenJS Basis in a fashion that evokes similarities to the just lately uncovered...

Common Rust Crate liblzma-sys Compromised with XZ Utils Backdoor Information

"Take a look at information" related to the XZ Utils backdoor have made their method to a Rust crate often called liblzma-sys, new findings...

Iranian MuddyWater Hackers Undertake New C2 Software ‘DarkBeatC2’ in Newest Marketing...

The Iranian menace actor generally known as MuddyWater has been attributed to a brand new command-and-control (C2) infrastructure known as DarkBeatC2, changing into the...

GitHub’s Pretend Recognition Rip-off Tricking Builders into Downloading Malware

Risk actors are actually profiting from GitHub's search performance to trick unsuspecting customers on the lookout for in style repositories into downloading spurious counterparts...

Microsoft Fixes 149 Flaws in Big April Patch Launch, Zero-Days Included

Microsoft has launched safety updates for the month of April 2024 to remediate a file 149 flaws, two of which have come below energetic...

Sketchy NuGet Bundle Doubtless Linked to Industrial Espionage Targets Builders

Risk hunters have recognized a suspicious bundle within the NuGet bundle supervisor that is possible designed to focus on builders working with instruments...

Most popular