Malicious
- REVIEWS
Researchers cause GitLab AI developer assistant to turn safe code malicious
Marketers promote AI-assisted developer tools as workhorses that are essential for today’s software engineer. Developer platform GitLab, for instance, claims…
Read More » - APPLICATIONS
Malicious PyPI Packages Exploit Instagram and TikTok APIs to Validate User Accounts
Cybersecurity researchers have uncovered malicious packages uploaded to the Python Package Index (PyPI) repository that act as checker tools to…
Read More » - APPLICATIONS
Malicious npm Package Leverages Unicode Steganography, Google Calendar as C2 Dropper
î ‚May 15, 2025î „Ravie LakshmananMalware / Threat Intelligence Cybersecurity researchers have discovered a malicious package named “os-info-checker-es6” that disguises itself as…
Read More » - APPLICATIONS
Malicious PyPI Package Posing as Solana Tool Stole Source Code in 761 Downloads
î ‚May 13, 2025î „Ravie LakshmananSupply Chain Attack / Blockchain Cybersecurity researchers have discovered a malicious package on the Python Package Index…
Read More » - APPLICATIONS
Malicious npm Packages Infect 3,200+ Cursor Users With Backdoor, Steal Credentials
î ‚May 09, 2025î „Ravie LakshmananSupply Chain Attack / Malware Cybersecurity researchers have flagged three malicious npm packages that are designed to…
Read More » - REVIEWS
Man pleads guilty to using malicious AI software to hack Disney employee
A California man has pleaded guilty to hacking an employee of The Walt Disney Company by tricking the person into…
Read More » - APPLICATIONS
Malicious Go Modules Deliver Disk-Wiping Linux Malware in Advanced Supply Chain Attack
î ‚May 03, 2025î „Ravie LakshmananSupply Chain Attack / Malware Cybersecurity researchers have discovered three malicious Go modules that include obfuscated code…
Read More » - APPLICATIONS
GCP Cloud Composer Bug Let Attackers Elevate Access via Malicious PyPI Packages
Cybersecurity researchers have detailed a now-patched vulnerability in Google Cloud Platform (GCP) that could have enabled an attacker to elevate…
Read More » - REVIEWS
Google suspended 39.2 million malicious advertisers in 2024 thanks to AI
Google may have finally found an application of large language models (LLMs) that even AI skeptics can get behind. The…
Read More » - APPLICATIONS
Malicious PyPI Package Targets MEXC Trading API to Steal Credentials and Redirect Orders
î ‚Apr 15, 2025î „Ravie LakshmananSupply Chain Attack / Malware Cybersecurity researchers have disclosed a malicious package uploaded to the Python Package…
Read More »