supply chain attack

North Korean Hackers Attacking Windows Users With Weaponized npm Files

Scalable package scanning within PyPi and npm using GuardDog software identified two malicious packages linked to a DPRK-aligned threat actor…

1 year ago

Polyfill JS Library Injected Malware Into 100K+ Websites

Polyfill.js is a JavaScript library that gives modern functionality on older browsers without native support for some web features. Polyfills…

1 year ago

Hackers Backdoored Courtroom Video Recording Software With System Hijacking Malware

A vulnerability (CVE-2024-4978) has been identified in JAVS Viewer v8.3.7, a critical component for managing digital recordings in legal and…

1 year ago

PHP Supply Chain Attack – Critical Vulnerability in PHP Central Component

The Packagist has been subjected to a serious vulnerability that impacts its functionality, as reported by the code security company,…

3 years ago

What is a Supply Chain Attack? How Attackers Use that to Compromise Organization Security

You might be wondering how the supply chain attack works? First, let us tell you that this is one type…

4 years ago