New Shai Hulud NPM Worm Emerges
Researchers from Wiz are currently tracking more than 25,000 affected repositories across approximately 350 unique users.
All topics
Researchers from Wiz are currently tracking more than 25,000 affected repositories across approximately 350 unique users.
Researchers say that all three campaigns are being driven at least in part by one threat actor.
Cisco’s Talos threat intelligence team said this campaign is the work of an actor it tracks as UAT4356, an APT team that has previously targeted ASA devices.
The incident is a pointed example of how an intrusion at a key point in the software supply chain can have a wide range of downstream effects.
LastPass researchers who found the “ongoing, widespread” campaign said that it involves two fake GitHub pages that deliver the Atomic Stealer malware.
A group of attackers with ties to the Vietnamese cybercrime underground ecosystem are running a significant campaign across many different countries that is delivering the PXA Stealer malware and uses novel sideloading and anti-analysis techniques to slip past defensive measures. The campaign has targeted victims in more than 60 countries and the attackers have harvested […]