Security Insights
Latest threat analysis, industry news, and security best practices from our expert team.
The Oncology Institute Breach: Third-Party Supply Chain Compromise — Detection and Hardening Guide
Introduction In November 2025, The Oncology Institute (TOI) disclosed a significant security incident stemming from a third-party software p...
TwizAdmin MaaS, Lazarus macOS & Supply Chain Poisoning: OTX Pulse Analysis
Threat Summary The latest OTX pulses indicate a coordinated escalation in credential theft operations, utilizing a blend of Malware-as-a-Ser...
TrapDoor Supply Chain Attack: Credential-Stealing Malware in npm, PyPI, and Crates.io
Introduction A sophisticated and coordinated supply chain attack, codenamed TrapDoor, has been actively targeting the developer ecosystem si...
TwizAdmin Infostealer & Lazarus Mach-O Man: OTX Pulse Analysis — Credential Theft & Supply Chain Defense
Threat Summary Recent intelligence from OTX pulses indicates a coordinated surge in credential theft operations spanning multiple platforms ...
Megalodon GitHub Actions Attack: Detection and Remediation Guide
Megalodon GitHub Actions Attack: Detection and Remediation Guide Introduction The integrity of the software supply chain is under siege. Sec...
DocketWise Data Breach: 143,000 Records Exposed via Third-Party Access — Detection and Response
Introduction A significant data breach involving DocketWise, a prominent immigration case management platform, has resulted in the exposure ...
Supply Chain Attacks: Detecting `node-ipc`, `@antv`, and Malicious GitHub Actions
Introduction The latest Security Affairs Malware Newsletter (Round 98) highlights a disturbing convergence of supply chain compromises targe...
TwizAdmin, Lazarus Mach-O Man & Supply Chain Attacks: OTX Pulse Analysis — Enterprise Detection Pack
Intelligence Briefing: Multi-Platform Infostealers & Supply Chain Compromises Threat Summary Recent OTX pulses indicate a convergence of hig...
Laravel Lang Supply Chain Attack: Detecting Malicious Composer Packages and Credential Theft
Introduction A critical supply chain attack has unfolded within the Laravel ecosystem, specifically targeting the widely used laravel-lang l...