X

Vous n'êtes pas connecté

Maroc Maroc - BLEEPINGCOMPUTER.COM - A La Une - Hier 19:07

OpenAI confirms security breach in TanStack supply chain attack

OpenAI says two employees' devices were breached in the recent TanStack supply chain attack that impacted hundreds of npm and PyPI packages, causing the company to rotate code-signing certificates for its applications as a precaution. [...]

Articles similaires

Sorry! Image not available at this time

Shai Hulud attack ships signed malicious TanStack, Mistral npm packages

bleepingcomputer.com - 12/May 11:29

Hundreds of packages across npm and PyPI have been compromised in a new Shai-Hulud supply-chain campaign delivering credential-stealing malware...

Sorry! Image not available at this time

84 npm Packages Linked to TanStack Hit by Supply-Chain Breach

itsecuritynews.info - 12/May 06:05

A massive supply chain breach affecting 84 npm packages within the widely used TanStack ecosystem. Malicious actors compromised these packages by...

Sorry! Image not available at this time

Cache-poisoning caper turns TanStack npm packages toxic

itsecuritynews.info - 12/May 12:03

Six-minute supply chain blitz pushed 84 malicious versions with credential theft and disk-wiping code This article has been indexed from...

Sorry! Image not available at this time

Hackers Compromise 170 npm Packages to Steal GitHub, npm, AWS, and Kubernetes Secrets

itsecuritynews.info - 19:32

A sprawling supply chain attack has put software developers worldwide on high alert after hackers compromised more than 170 npm packages and two PyPI...

Sorry! Image not available at this time

170 npm Packages Hijacked to Steal GitHub, AWS & Kubernetes Secrets

itsecuritynews.info - 11:03

Hackers have launched a large-scale supply chain attack by compromising more than 170 npm packages and two PyPI libraries, collectively downloaded...

Sorry! Image not available at this time

SAP npm Supply Chain Attack Targets Developer Credentials

itsecuritynews.info - 30/Apr 19:34

A supply chain attack on SAP npm packages used preinstall scripts to steal developer and CI/CD credentials. The post SAP npm Supply Chain Attack...

Sorry! Image not available at this time

SAP npm Supply Chain Attack Targets Developer Credentials

itsecuritynews.info - 30/Apr 19:34

A supply chain attack on SAP npm packages used preinstall scripts to steal developer and CI/CD credentials. The post SAP npm Supply Chain Attack...

Sorry! Image not available at this time

Mini Shai-Hulud Supply Chain Attack

itsecuritynews.info - 12/May 12:03

A new supply chain attack dubbed Mini Shai-Hulud has compromised more than 400 malicious versions across 170 software packages, with high-profile...

Sorry! Image not available at this time

Braintrust security incident raises concerns over AI supply chain risks

securityaffairs.co - 09/May 09:38

Braintrust warned customers to rotate API keys after hackers breached an AWS account, exposing secrets tied to cloud-based AI models. AI observability...

Sorry! Image not available at this time

QLNX Targets Developers in Supply Chain Credential Theft Campaign

itsecuritynews.info - 06/May 08:36

QLNX is a newly documented Linux remote access trojan (RAT) that targets the theft on developers’ and DevOps credentials to hijack software supply...