18 Malicious npm Packages Deliver Cross-Platform RAT to Alibaba Tool Users
Cybersecurity researchers have uncovered a sophisticated software supply chain attack targeting users of Alibaba developer tools with a cross-platform remote access trojan…
Cybersecurity researchers have uncovered a sophisticated software supply chain attack targeting users of Alibaba developer tools with a cross-platform remote access trojan…
Xanadu's photonic quantum computing Python library, mrmustard, was compromised with a poisoned version that ran an information stealer. The attack involved breaching…
A poisoned version of the mrmustard Python library from Xanadu was published to run an information stealer that harvests SSH keys, AWS…
A poisoned version of the mrmustard Python library from Xanadu was used to run an information stealer that harvests SSH private keys,…
StepSecurity analyzed the mrmustard supply chain attack, revealing that the payload ran on every package import and that the maintainer's GitHub account…
SafeDep reported that the mrmustard malware had three separate persistence mechanisms that kept the stealer running after package uninstallation. The credential theft…