Amazon Q Developer Flaw Could Let Malicious Repos Run Code via MCP Configs
A high-severity flaw in Amazon Q Developer could allow a malicious repository to execute commands and steal a developer's cloud credentials. The…
A high-severity flaw in Amazon Q Developer could allow a malicious repository to execute commands and steal a developer's cloud credentials. The…
Cybersecurity researchers have flagged a new evolution of the supply chain attack linked to the Mini Shai-Hulud, Miasma, and Hades malware family,…
Miasma is a multi-stage botnet loader identified in compromised AsyncAPI npm packages. It features a tasking framework with 744 modules, supporting six…
An INTERPOL-led operation codenamed Operation Ramz has successfully disrupted Sniper Dz, a decade-old phishing-as-a-service (PhaaS) platform, resulting in 201 arrests across 13…
Sniper Dz was a sophisticated phishing-as-a-service (PhaaS) platform active since at least 2015. It offered ready-made phishing kits, hosting infrastructure, and operational…
Sygnia, tracking the China-nexus group as Velvet Ant, discovered that the group backdoored Linux PAM and OpenSSH components to maintain persistent access…
HashiCorp Vault is a secrets management tool. The Atomic Arch stealer targets Vault tokens.
OpenAI develops AI models like ChatGPT. The Atomic Arch stealer targets OpenAI/ChatGPT bearer material and account metadata.
Podman is a daemonless container engine. The Atomic Arch stealer targets Podman credentials.
A modular malware first emerged in September 2024, capable of stealing browser credentials, cryptocurrency wallet data, files, clipboard content, and providing remote…