You are here |
johnstawinski.com | ||
| | | |
blog.talosintelligence.com
|
|
| | | | ArcaneDoor is a campaign that is the latest example of state-sponsored actors targeting perimeter network devices from multiple vendors. Coveted by these actors, perimeter network devices are the perfect intrusion point for espionage-focused campaigns. | |
| | | |
adnanthekhan.com
|
|
| | | | I've been doing a lot of scanning and reporting of GitHub Actions injection and pwn request vulnerabilities throughout GitHub over the last year. Back in November, I discovered vulnerabilities in a reusable action used by thousands, which could be backdoored by anyone with a specially crafted pull request and used. An attacker could then backdoor... | |
| | | |
snyk.io
|
|
| | | | On the 29th of March 2024, the high-stakes investment and prolonged campaign to plant a backdoor in the Linux software library liblzma to gain access to multiple operating systems via Linux distributions was carried out by a malicious actor. | |
| | | |
mouha.be
|
|
| |