X

Vous n'êtes pas connecté

Maroc Maroc - SECURITYAFFAIRS.CO - A La Une - 01/Apr 08:58

SentinelOne autonomous detection blocks trojaned LiteLLM triggered by Claude Code

SentinelOne AI stopped a LiteLLM supply chain attack in seconds, blocking malicious code automatically without human intervention. SentinelOne’s AI-based security detected and blocked a supply chain attack involving a compromised LiteLLM package. SentinelOne’s macOS agent detected and stopped a malicious process chain triggered by Claude Code after it unknowingly installed a compromised LiteLLM package. The […]

Articles similaires

Sorry! Image not available at this time

Supply chain attack on Axios npm package: Scope, impact, and remediations

itsecuritynews.info - 31/Mar 20:10

The Axios npm package has been compromised in a supply chain attack that uploaded new versions of the package containing malicious code. Any...

Sorry! Image not available at this time

LiteLLM Supply Chain Attack Exposes Credentials Across AI Ecosystems

itsecuritynews.info - 27/Mar 21:32

A backdoored LiteLLM package enabled credential theft and persistence, exposing software supply chain risks. The post LiteLLM Supply Chain Attack...

Sorry! Image not available at this time

Attackers hijack Axios npm account to spread RAT malware

securityaffairs.co - 31/Mar 18:30

Threat actors hijacked the npm account of Axios to distribute RAT malware via malicious package updates. Threat actors compromised the npm account of...

Sorry! Image not available at this time

Attackers hijack Axios npm account to spread RAT malware

securityaffairs.co - 31/Mar 18:30

Threat actors hijacked the npm account of Axios to distribute RAT malware via malicious package updates. Threat actors compromised the npm account of...

Sorry! Image not available at this time

Axios Compromise on npm Introduces Hidden Malicious Package

itsecuritynews.info - 31/Mar 21:09

A newly discovered software supply chain attack targeting the npm ecosystem briefly compromised one of the most widely used JavaScript libraries in...

Sorry! Image not available at this time

Axios Compromise on npm Introduces Hidden Malicious Package

itsecuritynews.info - 31/Mar 21:09

A newly discovered software supply chain attack targeting the npm ecosystem briefly compromised one of the most widely used JavaScript libraries in...

Sorry! Image not available at this time

The AI Supply Chain is Actually an API Supply Chain: Lessons from the LiteLLM Breach

itsecuritynews.info - 18:36

The recent supply chain attack involving Mercor and the LiteLLM vulnerability serves as a massive wake-up call for enterprise security teams. While...

Sorry! Image not available at this time

The AI Supply Chain is Actually an API Supply Chain: Lessons from the LiteLLM Breach

itsecuritynews.info - 18:36

The recent supply chain attack involving Mercor and the LiteLLM vulnerability serves as a massive wake-up call for enterprise security teams. While...

Sorry! Image not available at this time

Axios NPM Packages Compromised to Inject Malicious Codes in an Active Supply Chain Attack

itsecuritynews.info - 31/Mar 04:09

A sophisticated supply chain attack has targeted Axios, one of the most heavily adopted HTTP clients within the JavaScript ecosystem, by introducing a...

Sorry! Image not available at this time

Axios NPM Packages Compromised to Inject Malicious Codes in an Active Supply Chain Attack

itsecuritynews.info - 31/Mar 04:09

A sophisticated supply chain attack has targeted Axios, one of the most heavily adopted HTTP clients within the JavaScript ecosystem, by introducing a...