DevOps in the cloud and what is putting your data at riskHelp Net Security·Aug 22, 00:00 UTC · Aug 22, 2025Ransomware57
Malicious Code in XZ Utils for Linux Systems Enables Remote Code ExecutionThe Hacker News·Aug 13, 10:32 UTC · Aug 13, 2025VulnerabilityCVE-2024-309447
PyPI, npm, and AI Tools Exploited in Malware Surge Targeting DevOps and Cloud EnvironmentsThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2025Malware142
Cryptojacking campaign relies on DevOps toolsSecurity Affairs·Jun 3, 07:17 UTC · Jun 3, 2025Threat actorCVE-2020-14144260
Cryptojacking Campaign Targets DevOps Servers Including NomadInfosecurity Magazine·Jun 2, 15:00 UTC · Jun 2, 2025Threat actorCVE-2020-14144160
251 Amazon-Hosted IPs Used in Exploit Scan Targeting ColdFusion, Struts, and ElasticsearchThe Hacker News·May 28, 09:23 UTC · May 28, 2025Vulnerability in the wildCVE-2018-15961CVE-2017-5638CVE-2022-26134+2 CVEs60
Malicious PyPI Packages Exploit Instagram and TikTok APIs to Validate User AccountsThe Hacker News·May 20, 05:49 UTC · May 20, 2025Malware142
Tj-actions Supply Chain Attack Traced Back to GitHub Token CompromiseInfosecurity Magazine·Apr 4, 12:00 UTC · Apr 4, 2025Exploit / PoC in the wildCVE-2025-3006660
NCSC Releases Post-Quantum Cryptography TimelineSchneier on Security·Mar 21, 16:02 UTC · Mar 21, 2025Industry42
Lazarus Group Targets Developers in New Data Theft CampaignInfosecurity Magazine·Jan 17, 15:30 UTC · Jan 17, 2025Threat actor57
Security Flaws in Popular ML Toolkits Enable Server Hijacks, Privilege EscalationThe Hacker News·Nov 11, 10:11 UTC · Nov 11, 2024VulnerabilityCVE-2024-7340CVE-2024-6507CVE-2024-5565+4 CVEs47
Supply Chain Attacks Can Exploit Entry Points in Python, npm, and OpenThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2024Threat actor57
Hackers Use Fake GlobalProtect VPN Software in New WikiLoader Malware AttackThe Hacker News·Sep 4, 05:31 UTC · Sep 4, 2024Malware42
Palo Alto’s GlobalProtect VPN Spoofed to Deliver New Malware VariantInfosecurity Magazine·Sep 3, 14:30 UTC · Sep 3, 2024Malware42
North Korean Hackers Target Developers with Malicious npm PackagesThe Hacker News·Aug 31, 15:12 UTC · Aug 31, 2024Malware42
Kaspersky analysis of the backdoor in XZKaspersky Securelist·Apr 12, 08:00 UTC · Apr 12, 2024Malware42
Binarly released a free online scanner to detect the CVE-2024Security Affairs·Apr 2, 17:44 UTC · Apr 2, 2024VulnerabilityCVE-2024-309447
Expert found a backdoor in XZ tools used many Linux distributionsSecurity Affairs·Mar 30, 19:50 UTC · Mar 30, 2024MalwareCVE-2024-309447
‘Far-reaching’ hack stole information from Python developersThe Record·Mar 25, 16:53 UTC · Mar 25, 2024Data breach57
Code42 Incydr enhancements support DaaS and VDI environmentsHelp Net Security·Jan 11, 11:54 UTC · Jan 11, 2024Vulnerability42
Qubitstrike Targets Jupyter Notebooks with Crypto Mining and Rootkit CampaignThe Hacker News·Oct 18, 11:42 UTC · Oct 18, 2023Malware42
Who’s Behind the 8Base Ransomware Website?Krebs on Security·Sep 19, 02:48 UTC · Sep 19, 2023Ransomware57
LibreOffice: Stability, security, and continued developmentHelp Net Security·Sep 7, 00:00 UTC · Sep 7, 2023Vulnerability42
North Korean Hackers Suspected in New Wave of Malicious npm PackagesThe Hacker News·Aug 17, 13:38 UTC · Aug 17, 2023Malware42
Cerbos Cloud enhancements simplify authorization management for developersHelp Net Security·Jul 20, 00:00 UTC · Jul 20, 2023Policy & legal42
TeamTNT's Silentbob Botnet Infecting 196 Hosts in Cloud Attack CampaignThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2023Malware42
Prominent cryptocurrency exchange infected with previously unseen Mac malwareArs Technica · Security·Jun 27, 13:53 UTC · Jun 27, 2023Malware42
How to create SBOMs for container imagesHelp Net Security·Jun 21, 00:00 UTC · Jun 21, 2023Vulnerability42
Tool to find the Operation Triangulation tracesKaspersky Securelist·Jun 2, 12:16 UTC · Jun 2, 2023Malware42
Thousands of publicly-exposed Apache Superset installs exposed to RCE attacksSecurity Affairs·Apr 26, 13:34 UTC · Apr 26, 2023VulnerabilityCVE-2023-2752447
Intro to phishing: simulating attacks to build resiliencySecurity Affairs·Apr 21, 08:42 UTC · Apr 21, 2023Phishing & fraud42
3CX Desktop App Supply Chain Attack Leaves Millions at RiskThe Hacker News·Mar 30, 15:26 UTC · Mar 30, 2023Malware42
Researchers Share New Insights Into RIG Exploit Kit Malware's OperationsThe Hacker News·Feb 28, 18:45 UTC · Feb 28, 2023MalwareCVE-2021-26411CVE-2013-2551CVE-2014-6332+6 CVEs47
Sublime Security raises $9.8 million to boost email securityHelp Net Security·Feb 23, 00:00 UTC · Feb 23, 2023Ransomware57
Nissan Supplier Leaked Data on Thousands of CustomersInfosecurity Magazine·Jan 18, 10:30 UTC · Jan 18, 2023Data breach57
Motherboard vendor GIGABYTE hit by RansomExx ransomware gangThe Record·Jan 18, 00:00 UTC · Jan 18, 2023Ransomware57
Malicious PyPI package posed as SentinelOne SDK to serve infoSecurity Affairs·Dec 20, 00:59 UTC · Dec 20, 2022Malware42
Hackers stole Puma source code, no customer data, company saysThe Record·Dec 13, 00:00 UTC · Dec 13, 2022Ransomware57