Mend.io: Software Supply Chain Security
Mend.io disclosed details of an undocumented software supply chain attack using 14 RubyGems packages to store stolen credential data.
Mend.io disclosed details of an undocumented software supply chain attack using 14 RubyGems packages to store stolen credential data.
Gatekeeper is a macOS security feature that is bypassed by ClickLock Stealer by killing NotificationCenter, preventing security warnings from appearing.
Zoom is a leading provider of video conferencing and collaboration solutions. The company recently patched multiple vulnerabilities in its annotation tool affecting…
1Password is a password manager targeted by OkoSpyware for surveillance.
BitLocker is a full-disk encryption feature included with Microsoft Windows. It was the subject of a disclosed bypass vulnerability (CVE-2026-50661) requiring physical…
Miggo's security team discovered and responsibly disclosed two access control vulnerabilities in RabbitMQ that could leak OAuth secrets and expose cross-tenant data.
GitLab is a leading DevOps platform providing source code management, CI/CD, and security features. It recently addressed a critical vulnerability (CVE-2026-19478) affecting…
GPT-5.4 showed susceptibility to mind viruses similar to Claude Haiku 4.5, but did not adopt the AI supremacy payload in coding scenarios.
Qihoo 360 is a Chinese security company whose processes are checked by the Spark RAT malware during its setup mode to determine…
Arizona State University collaborated with Citizen Lab in August 2025 to uncover that popular Android VPN apps shared hard-coded passwords and collected…