Tag: supply chain attack

Metabase has released security updates after confirming active exploitation of a zero day vulnerability that allows attackers to gain administrator access without authentication.
Research presented at Black Hat USA 2026 demonstrates CSS based attack techniques affecting major webmail services, highlighting risks involving passwords, authentication tokens, and AI connected email workflows.

North Korea Linked npm Packages Impersonate Rollup Polyfill Tools To Target Developer Systems And Steal Secrets

Security researchers have uncovered malicious npm packages linked to North Korea that impersonate Rollup polyfill tools to deliver remote access malware and steal developer credentials and sensitive data.

CISA Adds Critical Joomla JCE Vulnerability To KEV Catalog Amid Active Exploitation Campaigns

CISA has added the critical Joomla JCE vulnerability CVE 2026 48907 to its Known Exploited Vulnerabilities catalog following reports of active exploitation, while researchers also uncover large scale attacks targeting WordPress websites through supply chain compromises and malicious plugins.

Miasma Supply Chain Attack Compromises Red Hat npm Packages To Steal Credentials And Spread Self Propagating Malware

A new supply chain attack called Miasma has compromised Red Hat npm packages to steal credentials, target CI/CD environments, and deploy a self propagating malware campaign affecting developers and cloud systems.

Malicious NPM Package Targets Claude AI User Directory To Steal Files Via GitHub

Researchers uncover a malicious npm package targeting Claude AI user directories to steal files and upload them to attacker controlled GitHub repositories.

Mini Shai Hulud Worm Compromises TanStack, Mistral AI, Guardrails AI And Multiple Open Source Packages In Supply Chain Attack

A Mini Shai Hulud worm linked to TeamPCP has compromised npm and PyPI packages across TanStack, Mistral AI, Guardrails AI and others, deploying credential stealers, CI/CD exploits, and cross ecosystem propagation techniques.

Researchers Uncover 73 Fake VS Code Extensions Distributing GlassWorm V2 Malware

Security researchers identified 73 fake Microsoft VS Code extensions on Open VSX tied to GlassWorm v2 malware campaign targeting developers through supply chain attacks and sleeper packages.

Malicious Docker Images And VS Code Extensions Compromise Checkmarx Supply Chain

Security researchers report malicious Docker images and VS Code extensions tied to Checkmarx supply chain compromise, exposing developer credentials, cloud tokens, and CI/CD secrets through multi-stage malware and npm propagation.

Smart Slider 3 Pro Update Compromised Through Nextend Servers Delivers Backdoored Version

A compromised Smart Slider 3 Pro update distributed via Nextend servers delivered a backdoored version affecting WordPress and Joomla sites, enabling remote access and persistence.

Trivy Supply Chain Attack Spurs Self Propagating CanisterWorm Across Npm Ecosystem

A supply chain attack linked to Trivy has led to the spread of CanisterWorm malware across dozens of npm packages, exploiting tokens and decentralized infrastructure.

GlassWorm Supply Chain Campaign Targets Developers Through Malicious Open VSX Extensions

Security researchers report an expanded GlassWorm campaign using malicious Open VSX extensions and hidden Unicode code to target developers and steal sensitive data.

Malicious Go Crypto Module Steals Passwords And Deploys Rekoobe Backdoor On Linux Systems

Researchers uncover a malicious Go module impersonating golang.org/x/crypto that steals terminal passwords, installs SSH persistence, and deploys the Rekoobe Linux backdoor.

Cline CLI 2.3.0 Supply Chain Attack Led To Unauthorized OpenClaw Installation On Developer Systems

A compromised npm publish token was used to release Cline CLI version 2.3.0, triggering unauthorized installation of OpenClaw on developer systems during an eight hour supply chain attack window.

Recent articles

spot_img