X

Vous n'êtes pas connecté

Rubriques :

Maroc Maroc - ITSECURITYNEWS.INFO - A La Une - Hier 12:03

Mini Shai-Hulud Supply Chain Attack

A new supply chain attack dubbed Mini Shai-Hulud has compromised more than 400 malicious versions across 170 software packages, with high-profile targets including TanStack, Mistral AI, and UiPath. This article has been indexed from CyberMaterial Read the original article: Mini…

Articles similaires

Sorry! Image not available at this time

Shai Hulud attack ships signed malicious TanStack, Mistral npm packages

bleepingcomputer.com - 11:29

Hundreds of packages across npm and PyPI have been compromised in a new Shai-Hulud supply-chain campaign delivering credential-stealing malware...

Sorry! Image not available at this time

Cache-poisoning caper turns TanStack npm packages toxic

itsecuritynews.info - 12:03

Six-minute supply chain blitz pushed 84 malicious versions with credential theft and disk-wiping code This article has been indexed from...

Sorry! Image not available at this time

1,800 Hit in Mini Shai-Hulud Attack on SAP, Lightning, Intercom

itsecuritynews.info - 01/May 08:13

The compromised Lightning and Intercom packages have a combined monthly download count of nearly 10 million. The post 1,800 Hit in Mini Shai-Hulud...

Sorry! Image not available at this time

1,800 Hit in Mini Shai-Hulud Attack on SAP, Lightning, Intercom

itsecuritynews.info - 01/May 08:13

The compromised Lightning and Intercom packages have a combined monthly download count of nearly 10 million. The post 1,800 Hit in Mini Shai-Hulud...

Sorry! Image not available at this time

Vendor Says Daemon Tools Supply Chain Attack Contained

itsecuritynews.info - 07/May 13:34

The software developer has identified the impacted systems, removed potentially compromised files, and validated installation packages. The post...

Sorry! Image not available at this time

Checkmarx Jenkins AST Plugin Compromised in Supply Chain Attack

itsecuritynews.info - 11/May 10:02

A malicious version of the plugin was published to the Jenkins Marketplace late last week. The post Checkmarx Jenkins AST Plugin Compromised in Supply...

Sorry! Image not available at this time

84 npm Packages Linked to TanStack Hit by Supply-Chain Breach

itsecuritynews.info - 06:05

A massive supply chain breach affecting 84 npm packages within the widely used TanStack ecosystem. Malicious actors compromised these packages by...

Sorry! Image not available at this time

SAP npm Supply Chain Attack Targets Developer Credentials

itsecuritynews.info - 30/Apr 19:34

A supply chain attack on SAP npm packages used preinstall scripts to steal developer and CI/CD credentials. The post SAP npm Supply Chain Attack...

Sorry! Image not available at this time

SAP npm Supply Chain Attack Targets Developer Credentials

itsecuritynews.info - 30/Apr 19:34

A supply chain attack on SAP npm packages used preinstall scripts to steal developer and CI/CD credentials. The post SAP npm Supply Chain Attack...

Sorry! Image not available at this time

PyTorch Lightning Poisoned — Mini Shai-Hulud Worm Crosses Into the AI/ML Supply Chain

thecyberthrone.in - 01/May 12:53

The lightning package on PyPI — the high-level PyTorch framework powering ML training pipelines across the globe — was compromised in an active...