New GitHub Actions Attack Chain Uses Fake CI Updates to Exfiltrate Secrets and T...
A new attack campaign is actively targeting open-source repositories on GitHub by carefully disguising malicious code as...
A new attack campaign is actively targeting open-source repositories on GitHub by carefully disguising malicious code as...
The largest decentralized perpetual futures exchange on the Solana blockchain — became the target of a massive and well-...
A malicious Python package has been discovered on PyPI that disguises itself as a privacy-focused AI inference tool whil...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2026-35616, a critical improper access co...
A threat actor has been running an active campaign on Reddit, using fake posts that promise free TradingView Premium acc...
A critical security flaw in the popular WordPress plugin “Ninja Forms – File Upload” has left approximately 50,000 websi...
A new ransomware campaign is putting organizations on high alert. A financially motivated threat group known as Storm-11...
Microsoft has officially rolled out its latest security intelligence update for Microsoft Defender Antivirus, delivering...
The integration of AI coding agents has introduced new, high-impact attack surfaces for development teams. Phantom Labs...