|
You are here |
blog.koi.security | ||
| | | | |
thehackernews.com
|
|
| | | | | Malicious npm postmark-mcp v1.0.16 backdoored MCP server stole emails from 1,643 downloads. | |
| | | | |
www.sysdig.com
|
|
| | | | | A new supply chain attack against the NPM repository is using novel, self-propagating malware (also known as a worm) to continue spreading itself. | |
| | | | |
www.pillar.security
|
|
| | | | | [AI summary] The article discusses the security risks associated with the Model Context Protocol (MCP), including token theft, server compromises, and prompt injection threats, while highlighting the need for strong security measures in AI integration. | |
| | | | |
blogs.blackberry.com
|
|
| | | Monster is a new Delphi-based Ransomware-as-a-Service. Posts advertising Monster appeared in June 2022 on a Russian forum called Russian Anonymous Marketplace (RAMP). Monster is highly configurable, so threat actors can set their own custom extension and personalized ransom note. | ||