|
You are here |
blog.sonatype.com | ||
| | | | |
thehackernews.com
|
|
| | | | | AI-created VS Code malware and fake npm packages reveal how attackers exploit open-source trust. | |
| | | | |
www.sonatype.com
|
|
| | | | | The 'pymafka' PyPI package is filled with trojans targeting Windows, macOS & Linux users and appears to typosquat the popular PyKafka. | |
| | | | |
www.sonatype.com
|
|
| | | | | A fake 'Truffle for VS Code' npm package delivers stealthy malware via a ScreenConnect installer. Learn how it evades detection and threatens developers. | |
| | | | |
www.nextgov.com
|
|
| | | The nation's cyber defense agency is continuing to drive a major effort to shift security responsibilities from users to software providers. | ||