@anon
sign up
@anon
sign up
pull down to refresh
Self Propagating NPM Malware Compromises over 40 Packages
www.stepsecurity.io/blog/ctrl-tinycolor-and-40-npm-packages-compromised
100 sats
\
0 comments
\
@hn
16 Sep
tech
related
We Just Found Malicious Code in the Popular NPM Package
jdstaerk.substack.com/p/we-just-found-malicious-code-in-the
1397 sats
\
18 comments
\
@kristapsk
8 Sep
security
Multiple Linux Backdoors Discovered Targeting Bitcoin Core Developer -LukeDashJr
lordx64.medium.com/multiple-linux-backdoors-discovered-targeting-bitcoin-core-developer-technical-analysis-793f8491f561
2269 sats
\
62 comments
\
@nym
19 Jan 2023
bitcoin
Malicious VSCode extensions with millions of installs discovered
www.bleepingcomputer.com/news/security/malicious-visual-studio-code-extensions-with-millions-of-installs-discovered/
370 sats
\
0 comments
\
@Rsync25
9 Jun 2024
security
Tinycolor npm Package Compromised in (another) Supply Chain Attack
socket.dev/blog/tinycolor-supply-chain-attack-affects-40-packages
953 sats
\
3 comments
\
@aljaz
16 Sep
security
We have identified and removed a malicious version of the Ledger Connect Kit
twitter.com/Ledger/status/1735291427100455293
1906 sats
\
16 comments
\
@0xbitcoiner
14 Dec 2023
bitcoin
How to Verify the Impact of the Recent NPM Attack on My Wallets?
400 sats
\
29 comments
\
@spiderman
11 Sep
bitcoin
Experts found 3 malicious packages hiding crypto miners in PyPi repository
securityaffairs.com/156897/malware/malicious-packages-pypi-repository.html
812 sats
\
2 comments
\
@Gian
5 Jan 2024
security
The GitHub Actions Worm: Compromise GitHub Repos Through the Actions Dep Tree
www.paloaltonetworks.com/blog/prisma-cloud/github-actions-worm-dependencies/
3819 sats
\
5 comments
\
@k00b
17 Sep 2023
tech
Lies we tell ourselves to keep using Golang
fasterthanli.me/articles/lies-we-tell-ourselves-to-keep-using-golang
257 sats
\
1 comment
\
@hn
26 Nov 2024
tech
Newly discovered Linux malware specializes in stealth and Monero mining
www.bleepingcomputer.com/news/security/linux-malware-perfctl-behind-years-long-cryptomining-campaign/
266 sats
\
0 comments
\
@dontforgetthekeys
4 Oct 2024
security
NPM debug and chalk packages compromised
www.aikido.dev/blog/npm-debug-and-chalk-packages-compromised
233 sats
\
0 comments
\
@hn
8 Sep
tech
Role of Deliberate Practice in the Development of Creativity (2014)
repositories.lib.utexas.edu/server/api/core/bitstreams/c8cc4a4f-e641-462b-9a72-654e60f71485/content
195 sats
\
2 comments
\
@hn
28 Sep 2024
tech
GitHub besieged by millions of malicious repositories in ongoing attack
arstechnica.com/security/2024/02/github-besieged-by-millions-of-malicious-repositories-in-ongoing-attack/
162 sats
\
1 comment
\
@zarko
1 Mar 2024
security
🧵 Widespread malware attack on GitHub
nitter.it/stephenlacy/status/1554697077430505473
314 sats
\
14 comments
\
@cryptocoin
3 Aug 2022
bitcoin
A Hacker ‘Ghost’ Network Is Quietly Spreading Malware on GitHub
www.wired.com/story/github-malware-spreading-network-stargazer-goblin/
193 sats
\
2 comments
\
@1GLENCoop
26 Jul 2024
security
New details reveal how hackers hijacked 35 Google Chrome extensions
www.bleepingcomputer.com/news/security/new-details-reveal-how-hackers-hijacked-35-google-chrome-extensions/
269 sats
\
1 comment
\
@StillStackinAfterAllTheseYears
3 Jan
security
Thousands of Linux Systems Infected By Stealthy Malware Since 2021
arstechnica.com/security/2024/10/persistent-stealthy-linux-malware-has-infected-thousands-since-2021/
150 sats
\
0 comments
\
@0xbitcoiner
4 Oct 2024
security
VSCode's SSH Agent Is Bananas
fly.io/blog/vscode-ssh-wtf/
111 sats
\
0 comments
\
@hn
8 Feb
tech
Nearly 20% of Docker Hub Repositories Spread Malware & Phishing Scams
jfrog.com/blog/attacks-on-docker-with-millions-of-malicious-repositories-spread-malware-and-phishing-scams/
154 sats
\
1 comment
\
@nym
30 Apr 2024
security
Over 100,000 Infected Repos Found on GitHub
1687 sats
\
6 comments
\
@0xbitcoiner
29 Feb 2024
security
NPM security: preventing supply chain attacks | Snyk (2022)
snyk.io/blog/npm-security-preventing-supply-chain-attacks/
417 sats
\
20 comments
\
@ek
9 Sep
security
more