MCP Marketplaces Caught Shipping LOLBAS Malware
A security audit of 256 AI agents from public MCP marketplaces found multiple agents wired to invoke Living-Off-the-Land…
7 articles about 'supply chain attack'
A security audit of 256 AI agents from public MCP marketplaces found multiple agents wired to invoke Living-Off-the-Land…
A new software supply chain attack campaign has been exposed, in which threat actors published malicious Ruby Gems and G…
Hacker group TeamPCP has launched a supply chain attack dubbed "Mini Shai-Hulud," compromising multiple npm packages wit…
The PyPI package for popular deep learning framework PyTorch Lightning was compromised by attackers, who uploaded two ma…
Cybersecurity researchers have uncovered a supply chain attack campaign targeting SAP-related npm packages. Attackers em…
Cybersecurity researchers have discovered malware dubbed "Mini Shai-Hulud" targeting SAP-related npm packages in a suppl…
Security research firms JFrog and Socket have discovered that the Bitwarden password manager's command-line interface (C…