Modified Shai-Hulud Worm Surfaces on npm Registry, Escalating Supply Chain Risks

Cybersecurity researchers recently disclosed the detection of a modified Shai-Hulud worm strain actively testing a payload within the npm registry, specifically embedded in the “@vietmoney/react-big-calendar” …

Read more

Trust Wallet Attributes $8.5 Million Crypto Theft to Industry-Wide Shai-Hulud Attack

Trust Wallet, a prominent cryptocurrency wallet provider, has officially attributed the recent theft of approximately $8.5 million from over 2,500 user wallets, primarily affecting its …

Read more

Persistent Vulnerabilities Plague Continuously Fuzzed Open-Source Projects

Distressed plague doctor costume with steampunk goggles for Halloween or cosplay.

Recent findings indicate that numerous long-enrolled open-source software (OSS) projects, despite continuous fuzzing efforts via platforms like OSS-Fuzz, continue to harbor critical vulnerabilities, prompting an …

Read more

Cybersecurity Crackdown: Lithuanian Hacker Arrested in Massive KMSAuto Malware Campaign

A Lithuanian national has been apprehended for their alleged central role in a sophisticated cybercrime operation that infected an estimated 2.8 million computer systems globally. …

Read more

Critical LangChain Core Flaw Exposes LLM Secrets and Risks Prompt Injection

critical langchain core flaw exposes llm secrets and risks prompt injection

A critical security vulnerability has been identified and disclosed in LangChain Core (specifically, the `langchain-core` Python package), which forms a foundational component of the widely …

Read more