Ravie LakshmananMay 12, 2026Supply Chain Attack / Software Security RubyGemsthe standard package manager for the Ruby programming language, has temporarily…
Hugging Facean open source store for AI models and components, is open to an attack via the "tokenizer" layer that…
TeamPCPthe threat actor behind the recent supply chain attack spree, has been linked to the compromise of the npm and…
Ravie LakshmananMay 07, 2026Malware / Threat Intelligence Cybersecurity researchers have discovered three packages on the Python Package Index (PyPI) repository…
TeamPCP's extensive supply chain campaign continued this week, as the cybercriminal group compromised several SAP npm packages in a "Mini…
On cost, Samfiru is blunt about why a buyout program is cheaper than a mass terminationparticularly at companies like Rogers…
Ravie LakshmananApr 29, 2026Supply Chain Attack / Malware Cybersecurity researchers are sounding the alarm about a new supply chain attack…
Cybersecurity researchers have flagged a fresh set of packages that have been compromised by bad actors to deliver a self-propagating…