North Korea-linked attackers exploit CVE-2025-55182 to deploy EtherRAT, a smart-contract-based RAT with multi-stage ...
In a nutshell, UBI is a small Rust program that installs binaries from GitHub or GitLab. Software developers don't just ...
Threat actors are still abusing Visual Studio Code extensions as an entry point, with the latest fake Prettier incident ...
A recent report has analyzed the repository statistics of the MySQL server to evaluate the project's status, Oracle's commitment to MySQL, and the future of the community edition. Julia Vural, ...
Sefirah delivers a smoother Android to PC connection with easy pairing, fast file transfers, clipboard sync, notifications, ...
Microsoft has outlined several ways in which it improved Visual Studio 2026 in November 2025, including better semantic ...
North Korean attackers have delivered more than 197 malicious packages as part of ongoing state-sponsored activity to ...
Malware is back on the OpenVSX and Microsoft Visual Studio marketplaces, researchers are warning. In mid-September this year, ...
The Glassworm campaign, which first emerged on the OpenVSX and Microsoft Visual Studio marketplaces in October, is now in its third wave, with 24 new packages added on the two platforms.
The latest attack from the self-replicating npm-package poisoning worm can also steal credentials and secrets from AWS, ...
Evalite is a TypeScript-native eval runner designed for AI applications, enabling developers to create reproducible evals ...
PostHog says the Shai-Hulud 2.0 npm worm compromise was "the largest and most impactful security incident" it's ever experienced after attackers slipped malicious releases into its JavaScript SDKs and ...