X

Vous n'êtes pas connecté

Rubriques :

Maroc Maroc - ITSECURITYNEWS.INFO - A La Une - 11/May 10:02

Checkmarx Jenkins AST Plugin Compromised in Supply Chain Attack

A malicious version of the plugin was published to the Jenkins Marketplace late last week. The post Checkmarx Jenkins AST Plugin Compromised in Supply Chain Attack appeared first on SecurityWeek. This article has been indexed from SecurityWeek Read the original…

Articles similaires

Sorry! Image not available at this time

Checkmarx Jenkins AST Plugin Compromised in KICS Supply Chain Attack

itsecuritynews.info - 12/May 06:05

Supply chain campaign has now extended to Checkmarx’s Jenkins ecosystem, with attackers pushing a malicious Checkmarx Jenkins AST plugin to the...

Sorry! Image not available at this time

TeamPCP Compromises Checkmarx Jenkins AST Plugin Weeks After KICS Supply Chain Attack

itsecuritynews.info - 11/May 19:32

Checkmarx has confirmed that a modified version of the Jenkins AST plugin was published to the Jenkins Marketplace. “If you are using Checkmarx...

Sorry! Image not available at this time

Official CheckMarx Jenkins package compromised with infostealer

bleepingcomputer.com - 11/May 22:03

Checkmarx warned over the weekend that a rogue version of its Jenkins Application Security Testing (AST) plugin had been published on the Jenkins...

Sorry! Image not available at this time

Vendor Says Daemon Tools Supply Chain Attack Contained

itsecuritynews.info - 07/May 13:34

The software developer has identified the impacted systems, removed potentially compromised files, and validated installation packages. The post...

Sorry! Image not available at this time

OpenAI Compromised in TanStack Supply Chain Attack

itsecuritynews.info - 13:03

OpenAI disclosed that two employee devices were compromised following a supply chain attack on TanStack, a widely used JavaScript library framework....

Sorry! Image not available at this time

Mini Shai-Hulud Supply Chain Attack

itsecuritynews.info - 12/May 12:03

A new supply chain attack dubbed Mini Shai-Hulud has compromised more than 400 malicious versions across 170 software packages, with high-profile...

Sorry! Image not available at this time

AI Coding Agents Could Fuel Next Supply Chain Crisis

itsecuritynews.info - 07/May 13:34

“TrustFall” attack shows how AI coding agents can be manipulated into launching stealthy supply chain compromises. The post AI Coding Agents Could...

Sorry! Image not available at this time

AI Coding Agents Could Fuel Next Supply Chain Crisis

itsecuritynews.info - 07/May 13:34

“TrustFall” attack shows how AI coding agents can be manipulated into launching stealthy supply chain compromises. The post AI Coding Agents Could...

Sorry! Image not available at this time

Microsoft Patches 137 Vulnerabilities

itsecuritynews.info - 12/May 18:32

Fresh security updates resolve critical flaws in Azure, Windows, Dynamics 365, and the SSO Plugin for Jira & Confluence. The post Microsoft Patches...

Sorry! Image not available at this time

1,800 Hit in Mini Shai-Hulud Attack on SAP, Lightning, Intercom

itsecuritynews.info - 01/May 08:13

The compromised Lightning and Intercom packages have a combined monthly download count of nearly 10 million. The post 1,800 Hit in Mini Shai-Hulud...