The disclosure comes as HelixGuard discovered a malicious package in PyPI named "spellcheckers" that claims to be a tool for ...
North Korean actors deployed 197 new npm packages delivering evolved OtterCookie and GolangGhost malware through fake ...
To safeguard against this line of attack, organizations are recommended to restrict B2B collaboration settings to only allow ...
Microsoft has announced plans to improve the security of Entra ID authentication by blocking unauthorized script injection ...
Bloody Wolf targets Kyrgyzstan and Uzbekistan with Java-based loaders delivering NetSupport RAT in sector-wide phishing ...
FBI flags $262M in account-takeover losses while researchers track AI-boosted phishing, fake stores, and holiday scam domains ...
"As a new and significantly more aggressive wave of npm supply chain malware, Shai-Hulud 2 combines stealthy execution, ...
Qilin has emerged as one of the most active ransomware operations this year, with the RaaS crew exhibiting "explosive growth" ...
ClickFix has become hugely successful as it relies on a simple yet effective method, which is to entice a user into infecting ...
According to information from Salesforce, reconnaissance efforts against customers with compromised Gainsight access tokens ...
Big firms like Microsoft, Salesforce, and Google had to react fast — stopping DDoS attacks, blocking bad links, and fixing ...
Malicious CGTrader .blend files abuse Blender Auto Run to install StealC V2, raiding browsers, plugins, and crypto wallets.