Logitech experienced a data leak due to a zero-day attack. The incident has raised concerns about the security of user data and the company's response to vulnerabilities. The US Senate has been pressing for a report on…
Logitech experienced a data leak due to a zero-day attack, impacting user data security. The incident has drawn attention from the US Senate, particularly Senator Ron Wyden, who has been advocating for better…
A large-scale spam campaign known as the IndonesianFoods worm has targeted the npm ecosystem, deploying over 43,000 malicious packages across at least 11 user accounts. This attack, which has been ongoing for more than…
A large-scale spam campaign, known as the IndonesianFoods worm, has inundated the npm registry with over 100,000 spam packages. This campaign, which has been ongoing for more than two years, utilizes at least 11…
A malware campaign has been identified that utilizes malicious npm packages to create fake websites designed to identify and exploit potential victims. The threat actor, known as 'dino_reborn', published these packages…
A coordinated token farming campaign has resulted in over 150,000 malicious packages flooding the npm registry, targeting the tea.xyz protocol. Discovered by Amazon Inspector researchers, this incident is described as…
Amazon Inspector has reported over 150,000 malicious packages in the npm registry linked to a token farming campaign targeting developers using the Tea Protocol. This incident is noted as one of the largest package…