Npm Supply Chain Malware Attack Targets Developers With Worm-Like Propagation
Malicious npm packages spread via worm-like propagation and steal developer credentials
20 articles
Malicious npm packages spread via worm-like propagation and steal developer credentials
Google Cloud’s COO advocated for combining general-purpose frontier large language models with task-specific AI agents
Apple patches iOS flaw that retained deleted notifications, exposing message data
Google Cloud will attribute a unique cryptographic ID every AI agent that will be tied to “traceable and auditable” authorization policies
Quorum Cyber report finds higher and further education institutions experienced 63% increase in attacks over a year
Forcepoint has found 10 new indirect prompt injection attacks targeting AI agents
The UK’s NCSC has fully backed passkeys as consumers’ first choice for login, citing progress with FIDO and successful use across the NHS
macOS LOTL techniques bypass detection using native tools and metadata abuse
The UK’s cybersecurity agency said the devices will be available for purchase by organizations around the world
UK unveils £90m cybersecurity funding at CYBERUK to boost SME resilience, promote Cyber Essentials and a new Cyber Resilience Pledge, sparking industry debate
Null subject phishing campaigns bypass filters and target VIPs with QR code and RMM abuse
A former ransomware negotiator has pleaded guilty to abusing his position by working with noted cybercrime group BlackCat
Infrawatch says ProxySmart platform enables SIM farm activity at “industrial scale”
The convergence of global tensions and rapid technological change is driving a new era of cyber risk, the NCSC warns
NGate malware abuses HandyPay app to steal NFC card data and PINs in Brazil
Gentlemen RaaS expands quickly with multi-platform attacks and SystemBC-linked infections
Data exposure, operational disruption and financial losses among issues faced by businesses struggling with the rapid rise of AI agents, warns Cloud Security...
Cloud app developer Vercel appears to have suffered a security breach
North Korea’s Lazarus Group is pegged for a $290m crypto theft at KelpDAO
ZionSiphon malware targets OT water systems with sabotage and ICS scanning capabilities