Cyber attacks are typically thought of as a direct breach of a company’s immediate security perimeters. But supply chain ...
An attacker used a flash loan to distort the bridge's Solana stablecoin pools before moving the proceeds to Ethereum, ...
The Ostium trading platform announced that an attacker stole $23.75 million from its liquidity provider vault last week, ...
The Shai-Hulud 2.0 supply chain attacks exposed a structural weakness in enterprise security: how organizations determine ...
Malicious Jscrambler NPM package versions distributed a cross-platform credential stealer in a new supply chain attack.
Threat intelligence firm Cyble said such attacks occurred, on average, nearly 13 times per month last year, from February through September 2024. Starting in October, they surged to nearly 16 per ...
An npm package named 'rand-user-agent' has been compromised in a supply chain attack to inject obfuscated code that activates a remote access trojan (RAT) on the user's system. The 'rand-user-agent' ...
It has been a bad six weeks for security firm Checkmarx. Over the past 40 days, it has been the victim of at least one supply-chain attack that delivered malware to customers on two separate occasions ...
To defend against slopsquatting, proactive trust verification must occur before any dependency lands in a developer's hands.
Crypto security incidents rose 50% in H1 2026 while losses fell 60%, as AI threats grew alongside according to a SlowMist ...