Security Insights
Latest threat analysis, industry news, and security best practices from our expert team.
The Developer Credential Economy: Detecting and Remediating Exposed Secrets in CI/CD Pipelines
The Developer Credential Economy: Detecting and Remediating Exposed Secrets in CI/CD Pipelines Introduction We are witnessing a paradigm shi...
Axios npm Supply Chain Attack: Detection and Removal of Cross-Platform RAT (v1.14.1 & v0.30.4)
Axios npm Supply Chain Attack: Detection and Removal of Cross-Platform RAT (v1.14.1 & v0.30.4) Introduction The Axios npm package, a ubiquit...
How to Protect Against the Trivy Supply Chain Attack: Defending CI/CD Pipelines from Infostealer Malware
How to Protect Against the Trivy Supply Chain Attack: Defending CI/CD Pipelines from Infostealer Malware Introduction In a concerning develo...
GlassWorm Escalates: Supply Chain Attack Hijacks Developer Workstations via Transitive Dependencies
The Evolution of GlassWorm: A Dangerous Shift in Supply Chain Tactics For cybersecurity professionals, the concept of a supply chain attack ...
Malicious Chrome Extensions Hijacked: Code Injection and Data Theft Risks
Malicious Chrome Extensions Hijacked: Code Injection and Data Theft Risks In a troubling trend highlighting the fragility of the software su...
Compromised QuickLens Extension Hijacked to Deliver Crypto-Stealing Malware via ClickFix
In the modern digital landscape, browser extensions have become indispensable tools for productivity. However, their deep integration into o...
Malicious Go Crypto Module Deploys Rekoobe Backdoor in Supply Chain Attack
Malicious Go Crypto Module Deploys Rekoobe Backdoor in Supply Chain Attack In the modern software development lifecycle, trust is a commodit...