#chain


Self-Propagating Supply Chain Worm Hijacks npm Packages to Steal Developer Tokens

Apr 22, 2026 // 20:40

Cybersecurity researchers have flagged a fresh set of packages that have been compromised by bad actors to deliver a self-propagating worm that spreads through stolen […]

Anthropic MCP Design Vulnerability Enables RCE, Threatening AI Supply Chain

Apr 20, 2026 // 13:44

Cybersecurity researchers have discovered a critical “by design” weakness in the Model Context Protocol’s (MCP) architecture that could pave the way for remote code execution […]

macOS App Security Revoked After OpenAI Supply Chain Hack, Axios Link.

Apr 13, 2026 // 10:18

OpenAI shared details about a GitHub Actions process used for signing their macOS applications. This process downloaded the harmful Axios library on March 31st. They […]

CPUID Supply Chain Attack: CPU-Z/HWMonitor Distributes Malware.

Apr 10, 2026 // 17:57

Cybercriminals compromised an API used by CPUID and altered the download links on their official site, distributing harmful software disguised as the popular CPU-Z and […]

Smart Slider update breach installs compromised WordPress/Joomla, acting as a supply chain attack.

Apr 9, 2026 // 20:37

Cybercriminals compromised the update mechanism for the Smart Slider 3 Pro plugin used on WordPress and Joomla, spreading a tainted version containing multiple secret entry […]

ShareFile Hacking: Chain flaws for RCE before logging in. Progress ShareFile vulnerable to RCE attack chain.

Apr 2, 2026 // 17:17

A combination of two security weaknesses in Progress ShareFile, a platform for secure file sharing in businesses, can be used to steal files from affected […]

AI as the Attacker: Traditional Cyber Defense Fails OR AI Attacks: Kill Chain Defenses Can’t Keep Up

Mar 25, 2026 // 15:03

In September 2025, Anthropic revealed that a government-backed attacker utilized an AI coding tool for an automated cyber spying operation targeting 30 global victims. The […]

FCC bans foreign routers amid supply chain, cyber risks.

Mar 25, 2026 // 10:55

The FCC announced Monday it’s prohibiting the import of certain new, foreign-made home internet routers due to “unacceptable” cybersecurity and national security threats. FCC Chair […]

Trivy Supply Chain Attack: Docker, GitHub Impacted. OR Trivy Hacked: Docker & GitHub Supply Chain Affected.

Mar 24, 2026 // 10:58

The TeamPCP hackers, responsible for the Trivy supply-chain attack, kept targeting Aqua Security by uploading harmful Docker images and taking control of the GitHub organization […]

Trivy Flaw Sparks Widespread npm CanisterWorm Outbreak Supply Chain Attack via Trivy Impacts 47 Packages

Mar 21, 2026 // 11:33

The individuals responsible for the supply chain attack that targeted the widely used Trivy scanner are believed to be launching additional attacks. These attacks have […]

Previous 1 … 5 6 7 8 Next