The Glassworm campaign, which first emerged on the OpenVSX and Microsoft Visual Studio marketplaces in October, is now in its third wave, with 24 new packages added on the two platforms.
Approximately 640 NPM packages have been infected with a new variant of the Shai-Hulud self-replicating worm in a fresh wave of attacks.
Hundreds of trojanized versions of well-known packages such as Zapier, ENS Domains, PostHog, and Postman have been planted in ...
North Korean attackers have delivered more than 197 malicious packages as part of ongoing state-sponsored activity to ...
Shai Hulud v2 infected 500+ npm packages (700+ versions) and spilled into Java/Maven — yikes. Compromised packages run a ...
Jane Seymour is as charming as ever in the double-length episode. The mystery at its center is pretty wobbly, however.
Shai-Hulud malware infiltrates 490 NPM packages, stealing API keys and credentials from ENS and major crypto development ...
The Better Business Bureau wants you to be aware of a scam that involves packages you didn’t order arriving at your door. I toured the White House to see Melania Trump's Christmas decorations. The ...