Supply chain attacks feel like they're becoming more and more common.
A supply-chain attack backdoored versions of Axios, a popular JavaScript library that's present in many different software ...
The TeamPCP hacking group continues its supply-chain rampage, now compromising the massively popular "LiteLLM" Python package ...
Google links Axios npm supply chain attack to UNC1069 after trojanized versions 1.14.1 and 0.30.4 spread WAVESHAPER.V2, ...
After hacking Trivy, TeamPCP moved to compromise repositories across NPM, Docker Hub, VS Code, and PyPI, stealing over 300GB ...
Hackers hijacked the npm account of the Axios package, a JavaScript HTTP client with 100M+ weekly downloads, to deliver ...
Discover custom web development services that actually scale, helping businesses improve performance, flexibility, security, ...
Axios 1.14.1 and 0.30.4 injected malicious plain-crypto-js@4.2.1 after npm compromise on March 31, 2026, deploying ...
During a recent penetration test, we came across an AI-powered desktop application that acted as a bridge between Claude ...
Java has endured radical transformations in the technology landscape and many threats to its prominence. What makes this ...
Cloud attacks are getting faster and deadlier - here's your best defense plan ...