Cybersecurity

Feeds to Scour
SubscribedAll
Scoured 180 posts in 27.3 ms

Risky Bulletin: RubyGems adds dependency cooldowns to counter supply chain attacks

 🔗Supply Chain Attacks
risky.biz·

New IronWorm malware hits 36 packages in npm supply-chain attack

 📦Dependency Confusion

The Median App and the Median User-Minute

 🔀Dispersion Trading
thediff.co
·

Massive PyPI Supply Chain Attack Harvests Cloud Credentials via Python Startup Hooks

 📦Dependency Confusion
orca.security·

Over 100 NPM, PyPI Packages Hit in New Shai-Hulud Supply Chain Attacks

 📦Dependency Confusion
securityweek.com·

Fake Job Offers Become a Cyber Espionage Weapon: Growing Threats to Government and Defense…

 🕵️Intelligence  Content type: Blog
medium.com
·

NCSC Warns Of Rising Software Supply Chain Attacks Targeting Open-Source Packages

 🔗Supply Chain Attacks
petri.com·

Risky Bulletin: RubyGems adds dependency cooldowns to counter supply chain attacks

 🔒Security
news.risky.biz·

someone actually leaked the Miasma supply chain attack toolkit source code on github

 🐙GitHub

Supply chain attack alert: .github/setup.js

 🔗Supply Chain Attacks  Content type: Discussion

I Researched the Red Hat npm Incident — Here's What Every Developer Should Know

 📦Dependency Confusion  Content type: Code
github.com··DEV

Ruby Fights Supply-Chain Attacks With Filter Offering 'Cooldown' Before Installing New Packages - Slashdot

 🔗Supply Chain Attacks

Lazarus Group's Latest: Brandjacking Campaign on npm

 📦Dependency Confusion
malware.news·

Lazarus Group Uses npm Brandjacking Campaign to Target Developers

 📦Package Managers
hackread.com·

CVE Lite CLI closes dependency gap — but won't stop modern threats

 🔒Security  Content type: Blog
reversinglabs.com·

Software supply chain attacks: check your dependencies

 🔗Supply Chain Attacks  Content type: Blog
ncsc.gov.uk·

Miasma Worm Hits 73 Microsoft GitHub Repositories in Major Supply Chain Attack

 📦Dependency Confusion
thehackernews.com·

2026 FIFA World Cup Threat Landscape: The Kickoff for Cybercriminals

 🎭Social Engineering  Content type: Blog
socradar.io·

New IronWorm malware hits 36 packages in npm supply-chain attack

 📦Dependency Confusion
lemmy.ml·

New IronWorm Malware Hits 36 Packages In npm Supply-Chain Attack

 📦Dependency Confusion
it.slashdot.org·

Keyboard Shortcuts

Navigation

Next / previous item
j/k
Open post
oorEnter
Preview post
v

Post Actions

Love post
a
Like post
l
Dislike post
d
Undo reaction
u
Save / unsave
s

Recommendations

Add interest / feed
Enter
Not interested
x

Go to

Home
gh
Interests
gi
Feeds
gf
Likes
gl
History
gy
Changelog
gc
Settings
gs
Browse
gb
Search
/

General

Show this help
?
Submit feedback
!
Close modal / unfocus
Esc

Press ? anytime to show this help