Injective Labs GitHub Compromise Pushes Wallet-Key-Stealing npm Packages
Unknown threat actors compromised the Injective Labs SDK project's GitHub repository and leveraged it to publish a malicious package on the npm…
Unknown threat actors compromised the Injective Labs SDK project's GitHub repository and leveraged it to publish a malicious package on the npm…
Software supply chain security was already complex, but the integration of AI into the build pipeline has introduced new risks that traditional…
A webinar hosted by OX researchers on July 22, 2026, covering AI integration's impact on attack surface, MCP server findings, and supply…
Cybersecurity researchers have flagged a new evolution of the supply chain attack linked to the Mini Shai-Hulud, Miasma, and Hades malware family,…
OX Security provides application security posture management (ASPM) solutions to secure software development pipelines.
On June 17, 2026, a software supply chain attack codenamed 'easy-day-js' compromised 145 npm packages under the @mastra/* namespace, a popular open-source…