More than 100K sites impacted by Polyfill supply chain attack

More than 100K sites impacted by Polyfill supply chain attack

The new Chinese owner tampers with the code of cdn.polyfill.io to inject malware targeting mobile devices ...

Hallucinated Packages, Malicious AI Models, and Insecure AI-Generated Code

Worried about attackers using AI models to write malicious code? Here are three other ways AI model use can lead to attacks ...

Threat Hunting 101: Five Common Threats to Look For

Learn more about supply chain threats and where to find them ...
AI code fixing

Report: Cyberattacks Against Software Supply Chains Become More Targeted

Phylum found an increase in the discovery of malicious packages targeting the software supply chains of specific organizations ...
Security Boulevard

Alert: NuGet Package SeroXen RAT Threat to .NET Developers

In a recent security issue, a deceptive NuGet package threatens .NET developers with the deployment of the SeroXen RAT, a harmful remote access trojan. Because the .NET framework is no longer limited ...
AI, cybersecurity, ChatGPT copyright robots continuous intelligence

ChatGPT Spreads Malicious Packages in AI Package Hallucination Attack

A newly discovered ChatGPT-based attack technique, dubbed AI package hallucination, lets attackers publish their own malicious packages in place of an unpublished package. In this way, attackers can execute supply chain attacks ...
Security Boulevard