mastodon.ie is one of the many independent Mastodon servers you can use to participate in the fediverse.
Irish Mastodon - run from Ireland, we welcome all who respect the community rules and members.

Administered by:

Server stats:

1.6K
active users

#supplychainattack

1 post1 participant0 posts today
David Cantrell 🏏<p>The inside of my new freezer is slightly smaller and I can't fit so many tubs of ice cream in.</p><p><a href="https://fosstodon.org/tags/SupplyChainAttack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SupplyChainAttack</span></a></p>
jbz<p>⚠️ Linux wiper malware hidden in malicious Go modules on GitHub </p><p>「 The attack appears designed specifically for Linux-based servers and developer environments, as the destructive payload - a Bash script named <a href="https://done.sh" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">done.sh</span><span class="invisible"></span></a>, runs a ‘dd’ command for the file-wiping activity.</p><p>Furthermore, the payload verifies that it runs in a Linux environment (runtime.GOOS == "linux") before trying to execute 」 </p><p><a href="https://www.bleepingcomputer.com/news/security/linux-wiper-malware-hidden-in-malicious-go-modules-on-github/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">bleepingcomputer.com/news/secu</span><span class="invisible">rity/linux-wiper-malware-hidden-in-malicious-go-modules-on-github/</span></a> </p><p><a href="https://indieweb.social/tags/golang" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>golang</span></a> <a href="https://indieweb.social/tags/malware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>malware</span></a> <a href="https://indieweb.social/tags/supplychainattack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>supplychainattack</span></a></p>
IT News<p>This Week in Security: Encrypted Messaging, NSO’s Judgement, and AI CVE DDoS - Cryptographic messaging has been in the news a lot recently. Like the formal audit... - <a href="https://hackaday.com/2025/05/09/this-week-in-security-encrypted-messaging-nsos-judgement-and-ai-cve-ddos/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">hackaday.com/2025/05/09/this-w</span><span class="invisible">eek-in-security-encrypted-messaging-nsos-judgement-and-ai-cve-ddos/</span></a> <a href="https://schleuss.online/tags/thisweekinsecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>thisweekinsecurity</span></a> <a href="https://schleuss.online/tags/supplychainattack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>supplychainattack</span></a> <a href="https://schleuss.online/tags/hackadaycolumns" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>hackadaycolumns</span></a> <a href="https://schleuss.online/tags/securityhacks" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>securityhacks</span></a> <a href="https://schleuss.online/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a> <a href="https://schleuss.online/tags/cves" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cves</span></a> <a href="https://schleuss.online/tags/ai" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ai</span></a></p>
IT News<p>Hundreds of e-commerce sites hacked in supply-chain attack - Hundreds of e-commerce sites, at least one owned by a large multinational ... - <a href="https://arstechnica.com/security/2025/05/hundreds-of-e-commerce-sites-hacked-in-supply-chain-attack/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">arstechnica.com/security/2025/</span><span class="invisible">05/hundreds-of-e-commerce-sites-hacked-in-supply-chain-attack/</span></a> <a href="https://schleuss.online/tags/supplychainattack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>supplychainattack</span></a> <a href="https://schleuss.online/tags/backdoors" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>backdoors</span></a> <a href="https://schleuss.online/tags/security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>security</span></a> <a href="https://schleuss.online/tags/magento" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>magento</span></a> <a href="https://schleuss.online/tags/malware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>malware</span></a> <a href="https://schleuss.online/tags/biz" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>biz</span></a>&amp;it</p>
Pyrzout :vm:<p>Sansec uncovered a supply chain attack via 21 backdoored Magento extensions – Source: securityaffairs.com <a href="https://ciso2ciso.com/sansec-uncovered-a-supply-chain-attack-via-21-backdoored-magento-extensions-source-securityaffairs-com/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">ciso2ciso.com/sansec-uncovered</span><span class="invisible">-a-supply-chain-attack-via-21-backdoored-magento-extensions-source-securityaffairs-com/</span></a> <a href="https://social.skynetcloud.site/tags/rssfeedpostgeneratorecho" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>rssfeedpostgeneratorecho</span></a> <a href="https://social.skynetcloud.site/tags/informationsecuritynews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>informationsecuritynews</span></a> <a href="https://social.skynetcloud.site/tags/ITInformationSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ITInformationSecurity</span></a> <a href="https://social.skynetcloud.site/tags/SecurityAffairscom" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecurityAffairscom</span></a> <a href="https://social.skynetcloud.site/tags/CyberSecurityNews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurityNews</span></a> <a href="https://social.skynetcloud.site/tags/PierluigiPaganini" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PierluigiPaganini</span></a> <a href="https://social.skynetcloud.site/tags/supplychainattack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>supplychainattack</span></a> <a href="https://social.skynetcloud.site/tags/SecurityAffairs" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecurityAffairs</span></a> <a href="https://social.skynetcloud.site/tags/SecurityAffairs" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecurityAffairs</span></a> <a href="https://social.skynetcloud.site/tags/SecurityNews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecurityNews</span></a> <a href="https://social.skynetcloud.site/tags/hackingnews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>hackingnews</span></a> <a href="https://social.skynetcloud.site/tags/CyberCrime" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberCrime</span></a> <a href="https://social.skynetcloud.site/tags/Cybercrime" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Cybercrime</span></a> <a href="https://social.skynetcloud.site/tags/hacking" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>hacking</span></a> <a href="https://social.skynetcloud.site/tags/Magento" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Magento</span></a> <a href="https://social.skynetcloud.site/tags/Malware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Malware</span></a> <a href="https://social.skynetcloud.site/tags/APT" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>APT</span></a></p>
IT News<p>This Week in Security: AirBorne, EvilNotify, and Revoked RDP - This week, Oligo has announced the AirBorne series of vulnerabilities in the Apple... - <a href="https://hackaday.com/2025/05/02/this-week-in-security-airborne-evilnotify-and-revoked-rdp/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">hackaday.com/2025/05/02/this-w</span><span class="invisible">eek-in-security-airborne-evilnotify-and-revoked-rdp/</span></a> <a href="https://schleuss.online/tags/thisweekinsecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>thisweekinsecurity</span></a> <a href="https://schleuss.online/tags/supplychainattack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>supplychainattack</span></a> <a href="https://schleuss.online/tags/hackadaycolumns" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>hackadaycolumns</span></a> <a href="https://schleuss.online/tags/securityhacks" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>securityhacks</span></a> <a href="https://schleuss.online/tags/airborne" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>airborne</span></a> <a href="https://schleuss.online/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a> <a href="https://schleuss.online/tags/cves" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cves</span></a> <a href="https://schleuss.online/tags/rdp" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>rdp</span></a></p>
Pyrzout :vm:<p>This Week in Security: XRP Poisoned, MCP Bypassed, and More <a href="https://hackaday.com/2025/04/25/this-week-in-security-xrp-poisoned-mcp-bypassed-and-more/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">hackaday.com/2025/04/25/this-w</span><span class="invisible">eek-in-security-xrp-poisoned-mcp-bypassed-and-more/</span></a> <a href="https://social.skynetcloud.site/tags/ThisWeekinSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ThisWeekinSecurity</span></a> <a href="https://social.skynetcloud.site/tags/supplychainattack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>supplychainattack</span></a> <a href="https://social.skynetcloud.site/tags/HackadayColumns" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>HackadayColumns</span></a> <a href="https://social.skynetcloud.site/tags/SecurityHacks" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecurityHacks</span></a> <a href="https://social.skynetcloud.site/tags/News" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>News</span></a> <a href="https://social.skynetcloud.site/tags/CVEs" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CVEs</span></a> <a href="https://social.skynetcloud.site/tags/mcp" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>mcp</span></a></p>
Pyrzout :vm:<p>Operation SyncHole: Lazarus APT goes back to the well – Source: securelist.com <a href="https://ciso2ciso.com/operation-synchole-lazarus-apt-goes-back-to-the-well-source-securelist-com/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">ciso2ciso.com/operation-syncho</span><span class="invisible">le-lazarus-apt-goes-back-to-the-well-source-securelist-com/</span></a> <a href="https://social.skynetcloud.site/tags/Vulnerabilitiesandexploits" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Vulnerabilitiesandexploits</span></a> <a href="https://social.skynetcloud.site/tags/rssfeedpostgeneratorecho" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>rssfeedpostgeneratorecho</span></a> <a href="https://social.skynetcloud.site/tags/zerodayvulnerabilities" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>zerodayvulnerabilities</span></a> <a href="https://social.skynetcloud.site/tags/APT" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>APT</span></a>(Targetedattacks) <a href="https://social.skynetcloud.site/tags/MalwareDescriptions" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MalwareDescriptions</span></a> <a href="https://social.skynetcloud.site/tags/MalwareTechnologies" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MalwareTechnologies</span></a> <a href="https://social.skynetcloud.site/tags/Wateringholeattacks" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Wateringholeattacks</span></a> <a href="https://social.skynetcloud.site/tags/CyberSecurityNews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurityNews</span></a> <a href="https://social.skynetcloud.site/tags/Supplychainattack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Supplychainattack</span></a> <a href="https://social.skynetcloud.site/tags/Targetedattacks" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Targetedattacks</span></a> <a href="https://social.skynetcloud.site/tags/infrastructure" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infrastructure</span></a> <a href="https://social.skynetcloud.site/tags/securelistcom" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>securelistcom</span></a> <a href="https://social.skynetcloud.site/tags/MITREATT" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MITREATT</span></a>&amp;CK <a href="https://social.skynetcloud.site/tags/APTreports" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>APTreports</span></a> <a href="https://social.skynetcloud.site/tags/Lazarus" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Lazarus</span></a> <a href="https://social.skynetcloud.site/tags/Malware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Malware</span></a> <a href="https://social.skynetcloud.site/tags/APT" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>APT</span></a></p>
Pyrzout :vm:<p>The popular xrpl.js Ripple cryptocurrency library was compromised in a supply chain attack – Source: securityaffairs.com <a href="https://ciso2ciso.com/the-popular-xrpl-js-ripple-cryptocurrency-library-was-compromised-in-a-supply-chain-attack-source-securityaffairs-com/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">ciso2ciso.com/the-popular-xrpl</span><span class="invisible">-js-ripple-cryptocurrency-library-was-compromised-in-a-supply-chain-attack-source-securityaffairs-com/</span></a> <a href="https://social.skynetcloud.site/tags/rssfeedpostgeneratorecho" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>rssfeedpostgeneratorecho</span></a> <a href="https://social.skynetcloud.site/tags/informationsecuritynews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>informationsecuritynews</span></a> <a href="https://social.skynetcloud.site/tags/ITInformationSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ITInformationSecurity</span></a> <a href="https://social.skynetcloud.site/tags/SecurityAffairscom" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecurityAffairscom</span></a> <a href="https://social.skynetcloud.site/tags/CyberSecurityNews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurityNews</span></a> <a href="https://social.skynetcloud.site/tags/PierluigiPaganini" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PierluigiPaganini</span></a> <a href="https://social.skynetcloud.site/tags/supplychainattack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>supplychainattack</span></a> <a href="https://social.skynetcloud.site/tags/SecurityAffairs" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecurityAffairs</span></a> <a href="https://social.skynetcloud.site/tags/SecurityAffairs" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecurityAffairs</span></a> <a href="https://social.skynetcloud.site/tags/BreakingNews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BreakingNews</span></a> <a href="https://social.skynetcloud.site/tags/SecurityNews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecurityNews</span></a> <a href="https://social.skynetcloud.site/tags/hackingnews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>hackingnews</span></a> <a href="https://social.skynetcloud.site/tags/supplychain" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>supplychain</span></a></p>
:mastodon: decio<p>TIL Slopsquatting 🤖📦</p><p>Article très intéressant sur cette nouvelle technique de <a href="https://infosec.exchange/tags/typosquatting" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>typosquatting</span></a> qui exploite les hallucinations récursives des LLM utilisés en programmation </p><p>Les LLM hallucinent des librairies/paquets imaginaires ➡️ des acteurs malveillants les enregistrent et les arment 🧨<br>Le tout sur fond de hype autour du "vibe coding" <br>⬇️ <br>"The Rise of Slopsquatting: How AI Hallucinations Are Fueling a New Class of Supply Chain Attacks"<br>👇<br><a href="https://socket.dev/blog/slopsquatting-how-ai-hallucinations-are-fueling-a-new-class-of-supply-chain-attacks" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">socket.dev/blog/slopsquatting-</span><span class="invisible">how-ai-hallucinations-are-fueling-a-new-class-of-supply-chain-attacks</span></a></p><p>Via la toujours excellente Risky Bulletin Newsletter du jour<br>👇<br><a href="https://risky.biz/risky-bulletin-ai-slopsquatting-its-coming/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">risky.biz/risky-bulletin-ai-sl</span><span class="invisible">opsquatting-its-coming/</span></a></p><p><a href="https://infosec.exchange/tags/CyberVeille" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberVeille</span></a> <a href="https://infosec.exchange/tags/supplychainattack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>supplychainattack</span></a></p>
IT News<p>This Week in Security: The Github Supply Chain Attack, Ransomware Decryption, and Paragon - Last Friday Github saw a supply chain attack hidden in a popular Github Action. To... - <a href="https://hackaday.com/2025/03/21/this-week-in-security-the-github-supply-chain-attack-ransomware-decryption-and-paragon/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">hackaday.com/2025/03/21/this-w</span><span class="invisible">eek-in-security-the-github-supply-chain-attack-ransomware-decryption-and-paragon/</span></a> <a href="https://schleuss.online/tags/thisweekinsecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>thisweekinsecurity</span></a> <a href="https://schleuss.online/tags/supplychainattack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>supplychainattack</span></a> <a href="https://schleuss.online/tags/hackadaycolumns" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>hackadaycolumns</span></a> <a href="https://schleuss.online/tags/securityhacks" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>securityhacks</span></a> <a href="https://schleuss.online/tags/githubactions" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>githubactions</span></a> <a href="https://schleuss.online/tags/paragon" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>paragon</span></a> <a href="https://schleuss.online/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a></p>
Pyrzout :vm:<p>This Week in Security: The Github Supply Chain Attack, Ransomware Decryption, and Paragon <a href="https://hackaday.com/2025/03/21/this-week-in-security-the-github-supply-chain-attack-ransomware-decryption-and-paragon/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">hackaday.com/2025/03/21/this-w</span><span class="invisible">eek-in-security-the-github-supply-chain-attack-ransomware-decryption-and-paragon/</span></a> <a href="https://social.skynetcloud.site/tags/ThisWeekinSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ThisWeekinSecurity</span></a> <a href="https://social.skynetcloud.site/tags/supplychainattack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>supplychainattack</span></a> <a href="https://social.skynetcloud.site/tags/HackadayColumns" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>HackadayColumns</span></a> <a href="https://social.skynetcloud.site/tags/SecurityHacks" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecurityHacks</span></a> <a href="https://social.skynetcloud.site/tags/GithubActions" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>GithubActions</span></a> <a href="https://social.skynetcloud.site/tags/Paragon" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Paragon</span></a> <a href="https://social.skynetcloud.site/tags/News" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>News</span></a></p>
Pyrzout :vm:<p>Rules File Backdoor: AI Code Editors exploited for silent supply chain attacks – Source: securityaffairs.com <a href="https://ciso2ciso.com/rules-file-backdoor-ai-code-editors-exploited-for-silent-supply-chain-attacks-source-securityaffairs-com/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">ciso2ciso.com/rules-file-backd</span><span class="invisible">oor-ai-code-editors-exploited-for-silent-supply-chain-attacks-source-securityaffairs-com/</span></a> <a href="https://social.skynetcloud.site/tags/rssfeedpostgeneratorecho" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>rssfeedpostgeneratorecho</span></a> <a href="https://social.skynetcloud.site/tags/informationsecuritynews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>informationsecuritynews</span></a> <a href="https://social.skynetcloud.site/tags/ITInformationSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ITInformationSecurity</span></a> <a href="https://social.skynetcloud.site/tags/SecurityAffairscom" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecurityAffairscom</span></a> <a href="https://social.skynetcloud.site/tags/CyberSecurityNews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurityNews</span></a> <a href="https://social.skynetcloud.site/tags/PierluigiPaganini" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PierluigiPaganini</span></a> <a href="https://social.skynetcloud.site/tags/RulesFileBackdoor" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>RulesFileBackdoor</span></a> <a href="https://social.skynetcloud.site/tags/supplychainattack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>supplychainattack</span></a> <a href="https://social.skynetcloud.site/tags/SecurityAffairs" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecurityAffairs</span></a> <a href="https://social.skynetcloud.site/tags/BreakingNews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BreakingNews</span></a> <a href="https://social.skynetcloud.site/tags/SecurityNews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SecurityNews</span></a> <a href="https://social.skynetcloud.site/tags/Copilot" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Copilot</span></a> <a href="https://social.skynetcloud.site/tags/hacking" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>hacking</span></a> <a href="https://social.skynetcloud.site/tags/AI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AI</span></a></p>
LavX News<p>The 'Rules File Backdoor': A New Era of AI-Driven Supply Chain Attacks</p><p>Pillar Security researchers have unveiled a critical vulnerability in AI coding assistants like GitHub Copilot and Cursor, allowing hackers to inject malicious code through seemingly innocuous configu...</p><p><a href="https://news.lavx.hu/article/the-rules-file-backdoor-a-new-era-of-ai-driven-supply-chain-attacks" rel="nofollow noopener noreferrer" target="_blank"><span class="invisible">https://</span><span class="ellipsis">news.lavx.hu/article/the-rules</span><span class="invisible">-file-backdoor-a-new-era-of-ai-driven-supply-chain-attacks</span></a></p><p><a href="https://mastodon.cloud/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a> <a href="https://mastodon.cloud/tags/tech" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>tech</span></a> <a href="https://mastodon.cloud/tags/AIsecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AIsecurity</span></a> <a href="https://mastodon.cloud/tags/SupplyChainAttack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SupplyChainAttack</span></a> <a href="https://mastodon.cloud/tags/UnicodeExploitation" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>UnicodeExploitation</span></a></p>
IT News<p>Large enterprises scramble after supply-chain attack spills their secrets - Open-source software used by more than 23,000 organizations, some of them ... - <a href="https://arstechnica.com/information-technology/2025/03/supply-chain-attack-exposing-credentials-affects-23k-users-of-tj-actions/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">arstechnica.com/information-te</span><span class="invisible">chnology/2025/03/supply-chain-attack-exposing-credentials-affects-23k-users-of-tj-actions/</span></a> <a href="https://schleuss.online/tags/opensourcesoftware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>opensourcesoftware</span></a> <a href="https://schleuss.online/tags/supplychainattack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>supplychainattack</span></a> <a href="https://schleuss.online/tags/tj" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>tj</span></a>-actions <a href="https://schleuss.online/tags/security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>security</span></a> <a href="https://schleuss.online/tags/biz" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>biz</span></a>&amp;it</p>
Anonymous 🐈️🐾☕🍵🏴🇵🇸 :af:<p>Microsoft warns that Chinese cyber-espionage threat group 'Silk Typhoon' has shifted its tactics, now targeting remote management tools and cloud services in supply chain attacks that give them access to downstream customers. <a href="https://kolektiva.social/tags/supplychainattack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>supplychainattack</span></a> <a href="https://kolektiva.social/tags/CyberAlerts" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberAlerts</span></a> <a href="https://www.bleepingcomputer.com/news/security/silk-typhoon-hackers-now-target-it-supply-chains-to-breach-networks/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">bleepingcomputer.com/news/secu</span><span class="invisible">rity/silk-typhoon-hackers-now-target-it-supply-chains-to-breach-networks/</span></a></p>
joschi<p>Don't miss the sequel: <a href="https://adnanthekhan.com/2024/12/21/cacheract-the-monster-in-your-build-cache/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">adnanthekhan.com/2024/12/21/ca</span><span class="invisible">cheract-the-monster-in-your-build-cache/</span></a></p><p><a href="https://hachyderm.io/tags/github" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>github</span></a> <a href="https://hachyderm.io/tags/infosec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infosec</span></a> <a href="https://hachyderm.io/tags/cachepoisoning" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cachepoisoning</span></a> <a href="https://hachyderm.io/tags/supplychainsecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>supplychainsecurity</span></a> <a href="https://hachyderm.io/tags/supplychainattack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>supplychainattack</span></a></p>
joschi<p><a href="https://adnanthekhan.com/2024/05/06/the-monsters-in-your-build-cache-github-actions-cache-poisoning/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">adnanthekhan.com/2024/05/06/th</span><span class="invisible">e-monsters-in-your-build-cache-github-actions-cache-poisoning/</span></a><br><a href="https://hachyderm.io/tags/github" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>github</span></a> <a href="https://hachyderm.io/tags/infosec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infosec</span></a> <a href="https://hachyderm.io/tags/cachepoisoning" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cachepoisoning</span></a> <a href="https://hachyderm.io/tags/supplychainsecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>supplychainsecurity</span></a> <a href="https://hachyderm.io/tags/supplychainattack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>supplychainattack</span></a></p>
flagthis<p>Malicious npm packages stole Ethereum developer keys; 1000+ downloads affected. <a href="https://ioc.exchange/tags/EthereumSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>EthereumSecurity</span></a> <a href="https://ioc.exchange/tags/NpmSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NpmSecurity</span></a> <a href="https://ioc.exchange/tags/SupplyChainAttack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SupplyChainAttack</span></a> <br> <br>More details: <a href="https://ciso2ciso.com/malicious-npm-packages-target-ethereum-developers-source-securityaffairs-com" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">ciso2ciso.com/malicious-npm-pa</span><span class="invisible">ckages-target-ethereum-developers-source-securityaffairs-com</span></a> - <a href="https://www.flagthis.com/news/8465" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="">flagthis.com/news/8465</span><span class="invisible"></span></a></p>
Pyrzout :vm:<p>Malicious npm Packages Stealing Developers’ Sensitive Data <a href="https://gbhackers.com/npm-package-data-theft/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">gbhackers.com/npm-package-data</span><span class="invisible">-theft/</span></a> <a href="https://social.skynetcloud.site/tags/BlockchainSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BlockchainSecurity</span></a> <a href="https://social.skynetcloud.site/tags/CyberSecurityNews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurityNews</span></a> <a href="https://social.skynetcloud.site/tags/SupplyChainAttack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SupplyChainAttack</span></a> <a href="https://social.skynetcloud.site/tags/Vulnerability" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Vulnerability</span></a> <a href="https://social.skynetcloud.site/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybersecurity</span></a> <a href="https://social.skynetcloud.site/tags/CyberAttack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberAttack</span></a></p>