Trojan Source is a vulnerability tracked by ThreatCluster, appearing in 1 threat cluster built from 2 intelligence report mentions.
Trojan Source is a vulnerability tracked across 1 threat cluster and 2 intelligence report mentions on ThreatCluster. First observed March 21, 2026; most recent activity March 21, 2026.
The GlassWorm malware campaign has been identified, using hidden Unicode characters to embed malicious code within open-source software components. Researchers discovered this threat in early March 2026, tracing…
Trojan Source is a vulnerability tracked by ThreatCluster, appearing in 1 threat cluster built from 2 intelligence report mentions.
The most recent intelligence report mentioning Trojan Source on ThreatCluster is dated March 21, 2026.
Across ThreatCluster reporting, Trojan Source most frequently co-occurs with Supply Chain Attack, Glassworm, T1195 - Supply Chain Compromise, GitHub, Npm.
The most significant recent cluster is “GlassWorm Malware Exploits Invisible Code in Open-Source Software” (2 articles · Updated March 21, 2026). Trojan Source appears across 1 threat cluster in total, listed above with sources.
Trojan Source appears in 2 intelligence report mentions across 1 deduplicated threat cluster, aggregated from 17,000+ monitored sources.