A malicious PyPI package, hermes-px, that masquerades as a “Secure AI Inference Proxy” while secretly…
Autor: schuejen
Google has announced a significant update for its Chrome browser, extending native lazy loading capabilities…
Hackers have stolen approximately $286 million from Drift Protocol, a leading decentralized perpetual futures exchange…
Hackers are abusing Windows shortcut files and GitHub to run a stealthy, multi‑stage malware campaign…
An automated campaign abusing GitHub’s pull_request_target workflow trigger to steal CI/CD secrets at scale. The attacker, using…
Threat actors associated with North Korea are deploying fake Microsoft Teams domains to conduct social…
A newly identified Windows malware dubbed ResokerRAT abuses Telegram’s Bot API as its main command-and-control (C2) channel…
Cybersecurity researchers have issued an urgent warning for organizations using Fortinet’s FortiClient Enterprise Management Server…
A coordinated supply chain attack has been uncovered involving 36 malicious npm packages masquerading as…