"The threat actors have recently resorted to utilizing JSON storage services like JSON Keeper, JSONsilo, and npoint.io to ...
Huntress finds three GootLoader infections since Oct 27, 2025; two led to domain controller compromise within 17 hours.
The typosquatted “@acitons/artifact” package targeted GitHub’s CI/CD workflows, stealing tokens and publishing malicious ...
The economics of cybercrime have shifted dramatically. What once took skilled attackers weeks to reverse engineer can now be accomplished in hours using AI-powered analysis tools and automated systems ...
Developers will have to contend with a dormant turned active malicious code on Visual Studio Code (VS Code) extensions, which ...
The GlassWorm malware campaign, which impacted the OpenVSX and Visual Studio Code marketplaces last month, has returned with ...
Over the last month, Barracuda threat analysts have seen the following notable developments in email-based threats targeting ...
Application security solutions provider Black Duck Software Inc. today announced the that it has added artificial ...
Zetaris, maker of a lakehouse for AI, has a new chief technology officer: former Hitachi Vantara CTO of Emerging Technologies ...
A year of escalating social-engineering attacks has produced one of the most efficient infection chains observed to date. Known as ClickFix, this method requires only that ...
A widely-adopted JavaScript library has been found carrying a critical vulnerability which could allow threat actors to ...