X

Vous n'êtes pas connecté

Maroc Maroc - BLEEPINGCOMPUTER.COM - A La Une - 29/Oct 16:26

PhantomRaven attack floods npm with credential-stealing packages

An active campaign named 'PhantomRaven' is targeting developers with dozens of malicious npm packages that steal authentication tokens, CI/CD secrets, and GitHub credentials. [...]

Articles similaires

Sorry! Image not available at this time

PhantomRaven attack floods npm with credential-stealing packages

bleepingcomputer.com - 29/Oct 16:26

An active campaign named 'PhantomRaven' is targeting developers with dozens of malicious npm packages that steal authentication tokens, CI/CD...

Sorry! Image not available at this time

PhantomRaven Attack Discovered in 126 Malicious npm Packages, Exceeding 86,000 Downloads

itsecuritynews.info - 30/Oct 06:04

The global developer community has been rocked by the emergence of PhantomRaven, a far-reaching campaign involving 126 malicious npm packages with...

Sorry! Image not available at this time

PhantomRaven Attack Discovered in 126 Malicious npm Packages, Exceeding 86,000 Downloads

itsecuritynews.info - 30/Oct 06:04

The global developer community has been rocked by the emergence of PhantomRaven, a far-reaching campaign involving 126 malicious npm packages with...

Sorry! Image not available at this time

Malicious NPM packages fetch infostealer for Windows, Linux, macOS

bleepingcomputer.com - 29/Oct 23:16

Ten malicious packages mimicking legitimate software projects in the npm registry download an information-stealing component that collects sensitive...

Sorry! Image not available at this time

Malicious NPM packages fetch infostealer for Windows, Linux, macOS

bleepingcomputer.com - 29/Oct 23:16

Ten malicious packages mimicking legitimate software projects in the npm registry download an information-stealing component that collects sensitive...

Sorry! Image not available at this time

Malicious NuGet Packages Mimic as Popular Nethereum Project to Steal Wallet Keys

itsecuritynews.info - 25/Oct 15:34

A sophisticated supply chain attack has emerged targeting cryptocurrency developers through the NuGet package ecosystem. Cybersecurity researchers...

Sorry! Image not available at this time

Malicious NuGet Packages Pose as Nethereum, Steal Crypto Wallet Keys

itsecuritynews.info - 24/Oct 08:05

Socket’s Threat Research Team has uncovered a sophisticated supply chain attack targeting cryptocurrency developers through the NuGet package...

Sorry! Image not available at this time

Scanning GitHub Gists for Secrets with Bring Your Own Source

itsecuritynews.info - 27/Oct 18:04

Developers treat GitHub Gists as a “paste everything” service, accidentally exposing secrets like API keys and tokens. BYOS lets you scan and...

Sorry! Image not available at this time

Scanning GitHub Gists for Secrets with Bring Your Own Source

itsecuritynews.info - 27/Oct 18:04

Developers treat GitHub Gists as a “paste everything” service, accidentally exposing secrets like API keys and tokens. BYOS lets you scan and...

Sorry! Image not available at this time

AdaptixC2 Emerges in npm Supply-Chain Exploit Against Developers

itsecuritynews.info - 21/Oct 07:04

Cybersecurity researchers at Kaspersky have uncovered a sophisticated supply chain attack targeting the npm ecosystem, where threat actors distributed...

Les derniers communiqués