@anon
sign up
@anon
sign up
pull down to refresh
Bogus npm Packages Used to Trick Software Developers into Installing Malware
thehackernews.com/2024/04/bogus-npm-packages-used-to-trick.html?m=1
42 sats
\
1 comment
\
@ch0k1
28 Apr 2024
security
related
We Just Found Malicious Code in the Popular NPM Package
jdstaerk.substack.com/p/we-just-found-malicious-code-in-the
1397 sats
\
18 comments
\
@kristapsk
8 Sep
security
Nostr needs to fade into background
2650 sats
\
30 comments
\
@purplereign
11 Aug 2023
nostr
Multiple Linux Backdoors Discovered Targeting Bitcoin Core Developer -LukeDashJr
lordx64.medium.com/multiple-linux-backdoors-discovered-targeting-bitcoin-core-developer-technical-analysis-793f8491f561
2269 sats
\
62 comments
\
@nym
19 Jan 2023
bitcoin
Malicious VSCode extensions with millions of installs discovered
www.bleepingcomputer.com/news/security/malicious-visual-studio-code-extensions-with-millions-of-installs-discovered/
370 sats
\
0 comments
\
@Rsync25
9 Jun 2024
security
We have identified and removed a malicious version of the Ledger Connect Kit
twitter.com/Ledger/status/1735291427100455293
1906 sats
\
16 comments
\
@0xbitcoiner
14 Dec 2023
bitcoin
Nearly 20% of Docker Hub Repositories Spread Malware & Phishing Scams
jfrog.com/blog/attacks-on-docker-with-millions-of-malicious-repositories-spread-malware-and-phishing-scams/
154 sats
\
1 comment
\
@nym
30 Apr 2024
security
Over 100,000 Infected Repos Found on GitHub
1687 sats
\
6 comments
\
@0xbitcoiner
29 Feb 2024
security
Experts found 3 malicious packages hiding crypto miners in PyPi repository
securityaffairs.com/156897/malware/malicious-packages-pypi-repository.html
812 sats
\
2 comments
\
@Gian
5 Jan 2024
security
NPM security: preventing supply chain attacks | Snyk (2022)
snyk.io/blog/npm-security-preventing-supply-chain-attacks/
417 sats
\
20 comments
\
@ek
9 Sep
security
The GitHub Actions Worm: Compromise GitHub Repos Through the Actions Dep Tree
www.paloaltonetworks.com/blog/prisma-cloud/github-actions-worm-dependencies/
3819 sats
\
5 comments
\
@k00b
17 Sep 2023
tech
Newly discovered Linux malware specializes in stealth and Monero mining
www.bleepingcomputer.com/news/security/linux-malware-perfctl-behind-years-long-cryptomining-campaign/
266 sats
\
0 comments
\
@dontforgetthekeys
4 Oct 2024
security
NPM debug and chalk packages compromised
www.aikido.dev/blog/npm-debug-and-chalk-packages-compromised
233 sats
\
0 comments
\
@hn
8 Sep
tech
Growing anti-dev sentiments...
840 sats
\
23 comments
\
@timechain
6 Feb 2023
bitcoin
Social engineering takeovers of open source projects
openssf.org/blog/2024/04/15/open-source-security-openssf-and-openjs-foundations-issue-alert-for-social-engineering-takeovers-of-open-source-projects/
367 sats
\
3 comments
\
@hn
6 May 2024
tech
Hacking campaign compromised at least 16 Chrome browser extensions
securityaffairs.com/172491/hacking/chrome-browser-extensions-compromise.html
166 sats
\
0 comments
\
@nym
1 Jan
security
New details reveal how hackers hijacked 35 Google Chrome extensions
www.bleepingcomputer.com/news/security/new-details-reveal-how-hackers-hijacked-35-google-chrome-extensions/
269 sats
\
1 comment
\
@StillStackinAfterAllTheseYears
3 Jan
security
A Hacker ‘Ghost’ Network Is Quietly Spreading Malware on GitHub
www.wired.com/story/github-malware-spreading-network-stargazer-goblin/
193 sats
\
2 comments
\
@1GLENCoop
26 Jul 2024
security
🧵 Widespread malware attack on GitHub
nitter.it/stephenlacy/status/1554697077430505473
314 sats
\
14 comments
\
@cryptocoin
3 Aug 2022
bitcoin
firefox-patch-bin, librewolf-fix-bin and other AUR packages contain malware
lists.archlinux.org/archives/list/aur-general@lists.archlinux.org/thread/7EZTJXLIAQLARQNTMEW2HBWZYE626IFJ/
308 sats
\
2 comments
\
@k00b
24 Jul
security
Thousands of Linux Systems Infected By Stealthy Malware Since 2021
arstechnica.com/security/2024/10/persistent-stealthy-linux-malware-has-infected-thousands-since-2021/
150 sats
\
0 comments
\
@0xbitcoiner
4 Oct 2024
security
Pkgzap Revamped: npm package for developers to receive direct lightning payments
pkgzap.albylabs.com
182 sats
\
0 comments
\
@supratic
4 Sep
lightning
more