Hackers Use Poisoned Axios Package and Phantom Dependency to Spread Cross-Platfo...
One of the most widely used JavaScript libraries in the world was turned into a weapon on March 30, 2026, when attackers...
One of the most widely used JavaScript libraries in the world was turned into a weapon on March 30, 2026, when attackers...
A new supply chain attack targeting developers after threat actors compromised the official WordPress domain for ILSpy o...
A maximum-severity vulnerability in Dgraph, a popular open-source graph database. Tracked as CVE-2026-34976, this critic...
The Apache Software Foundation has released emergency security updates to address two severe vulnerabilities in the Apac...
Google’s Vulnerability Reward Program (VRP) celebrated its 15th anniversary in 2025 by breaking every payout record in i...
A viral video circulating in cybersecurity and crypto circles has exposed a novel and surprisingly simple technique for...
North Korea’s cyber program has fundamentally shifted how it builds and deploys malware. Rather than relying on one all-...
A new attack campaign is actively targeting open-source repositories on GitHub by carefully disguising malicious code as...
The largest decentralized perpetual futures exchange on the Solana blockchain — became the target of a massive and well-...