Supply chain attacks with a Dune sci-fi saga branding continue to spread across the open-source ecosystem, with a Microsoft ...
A new report out today from cybersecurity company Forcepoint LLC’s X-Labs research team details a supply chain attack that ...
The world’s largest open-source registry, node package manager (npm), has been hit by another fast-moving malware attack, ...
A Virginia software contractor deleted nearly 100 US government databases within minutes of being fired, with his twin ...
The hacker group TeamPCP uploaded two malicious versions of the popular Python library LiteLLM to PyPI. Using a previously compromised version of the vulnerability scanner Trivy, the attackers stole ...
Hermes Agent gets a lot right, and it's something I'd trust a lot more than OpenClaw.
Articraft transforms the creation of articulated 3D assets into a programmatic, code-generation workflow powered by LLMs. Engineered for large-scale dataset generation, it bypasses heavyweight manual ...
Hulud payload to steal CI/CD secrets from Linux-based automation environments. The malware executes during npm install and ...
Sometime around the last week of May 2026, attackers uploaded poisoned packages to three of the most widely used software ...