Malicious npm packages caught stealing Discord tokens, environment variablesThe Record·Dec 21, 00:00 UTC · Dec 21, 2022Vulnerability30
Six typosquatting packages in PyPI repository laced with crypto minerSecurity Affairs·Jun 28, 06:46 UTC · Jun 28, 2021Vulnerability55
Another set of malicious npm packages caught stealing Discord tokens, environment variablesThe Record·Jan 17, 00:00 UTC · Jan 17, 2023Vulnerability30
36 Malicious npm Packages Exploited Redis, PostgreSQL to Deploy Persistent ImplantsThe Hacker News·Apr 6, 06:40 UTC · Apr 6, 2026Vulnerability142
ThreatsDay Bulletin: OpenSSL RCE, Foxit 0-Days, Copilot Leak, AI Password Flaws & 20+ StoriesThe Hacker News·Feb 23, 10:23 UTC · Feb 23, 2026Vulnerability55
Malicious PyPI, npm, and Ruby Packages Exposed in Ongoing OpenThe Hacker News·Jun 4, 10:11 UTC · Jun 4, 2025Vulnerability142
Malicious PyPI Package ‘Fabrice’ Found Stealing AWS Keys from Thousands of DevelopersThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2024Vulnerability142
Security implications of misconfigurationsCisco Talos·Jul 22, 12:00 UTC · Jul 22, 2021Vulnerability30
Heisenberg: Open-source software supply chain health check toolHelp Net Security·Nov 3, 00:00 UTC · Nov 3, 2025Vulnerability42
Don’t Get Charcoal in Your Stocking: Tips for the Holiday Cyberattack SeasonRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Vulnerability42
Surge in Malicious Software Packages Exploits System FlawsInfosecurity Magazine·Mar 10, 14:00 UTC · Mar 10, 2025Vulnerability55
Malicious Go Package Exploits Module Mirror Caching for Persistent Remote AccessThe Hacker News·Feb 6, 03:47 UTC · Feb 6, 2025Vulnerability42
Multiple Security Flaws Discovered in Popular Software Package ManagersThe Hacker News·Mar 11, 13:11 UTC · Mar 11, 2022Vulnerability42
Week in review: Cloud migration and cybersecurity, data trending on the dark web, Zoom securityHelp Net Security·Apr 19, 00:00 UTC · Apr 19, 2020Vulnerability in the wildCVE-2020-395260
Lookalike npm Package Hides a MultiInfosecurity Magazine·Jun 23, 15:00 UTC · Jun 23, 2026Vulnerability142
ThreatsDay Bulletin: Edge Plaintext Passwords, ICS 0-Days, Patch-orThe Hacker News·May 7, 17:59 UTC · May 7, 2026VulnerabilityCVE-2026-7411CVE-2026-7412CVE-2026-467060
Researchers Uncover 454,000+ Malicious Open Source PackagesInfosecurity Magazine·Jan 28, 11:00 UTC · Jan 28, 2026Vulnerability55
⚡ Weekly Recap: IoT Exploits, Wallet Breaches, Rogue Extensions, AI Abuse & MoreThe Hacker News·Jan 5, 12:56 UTC · Jan 5, 2026VulnerabilityCVE-2025-55182CVE-2025-13915CVE-2025-52691+7 CVEs60
RubyGems, PyPI Hit by Malicious Packages Stealing Credentials, Crypto, Forcing Security ChangesThe Hacker News·Aug 9, 06:49 UTC · Aug 9, 2025Vulnerability42
5 Questions to Ask When Evaluating Brand Protection SolutionsRecorded Future·Jul 31, 00:00 UTC · Jul 31, 2025Vulnerability55
6 Ways to Supercharge Your Risk Reduction With Recorded Future in 2020Recorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Vulnerability30
Data-stealing VS Code extensions removed from official MarketplaceHelp Net Security·May 21, 00:00 UTC · May 21, 2025Vulnerability42
Most critical vulnerabilities aren't worth your attentionHelp Net Security·Apr 28, 00:00 UTC · Apr 28, 2025Vulnerability55
Hackers using AI-produced audio to impersonate tax preparers, IRSThe Record·Apr 14, 14:10 UTC · Apr 14, 2025Vulnerability30
Don't let these open-source cybersecurity tools slip under your radarHelp Net Security·Jan 27, 00:00 UTC · Jan 27, 2025Vulnerability30
Week in review: Tips for starting your cybersecurity career, Patch Tuesday forecastHelp Net Security·Aug 11, 00:00 UTC · Aug 11, 2024VulnerabilityCVE-2024-42219CVE-2024-42218CVE-2024-38856+2 CVEs60
North Korean Hackers Moonstone Sleet Push Malicious JS Packages to npm RegistryThe Hacker News·Aug 6, 15:47 UTC · Aug 6, 2024Vulnerability30
Fireblocks expands DeFi suite with threat detection featuresHelp Net Security·Apr 25, 00:00 UTC · Apr 25, 2024Vulnerability55
GitGuardian SCA automates vulnerability detection and prioritization for enhanced code healthHelp Net Security·Mar 26, 00:00 UTC · Mar 26, 2024Vulnerability55
Securing software repositories leads to better OSS securityHelp Net Security·Mar 4, 00:00 UTC · Mar 4, 2024Vulnerability55
Ubuntu 'command-not-found' Tool Could Trick Users into Installing Rogue PackagesThe Hacker News·Feb 21, 14:42 UTC · Feb 21, 2024Vulnerability42
Abusing Ubuntu 'command-not-found' utility to install malicious packagesSecurity Affairs·Feb 14, 21:48 UTC · Feb 14, 2024Vulnerability42
CI/CD Risks: Protecting Your Software Development PipelinesThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2023Vulnerability55
GitHub Repositories Hit by Password-Stealing Commits Disguised as Dependabot ContributionsThe Hacker News·Sep 29, 02:43 UTC · Sep 29, 2023Vulnerability42
Rogue NuGet Packages Infect .NET Developers with CryptoThe Hacker News·Mar 23, 06:08 UTC · Mar 23, 2023Vulnerability42
Researchers Find a Way Malicious NPM Libraries Can Evade Vulnerability DetectionThe Hacker News·Dec 1, 09:22 UTC · Dec 1, 2022Vulnerability55
Malicious NPM Package Caught Mimicking Material Tailwind CSS PackageThe Hacker News·Sep 24, 04:54 UTC · Sep 24, 2022Vulnerability42