Hackers Poison Adform Script to Swap Crypto Wallet Addresses Across Customer Sites
Swati KhandelwalAug 01, 2026Web Security / Supply Chain Attack Attackers modified a JavaScript file served by advertising technology company Adform,...
Swati KhandelwalAug 01, 2026Web Security / Supply Chain Attack Attackers modified a JavaScript file served by advertising technology company Adform,...
Ravie LakshmananJul 27, 2026Software Supply Chain / DevSecOps GitHub has announced a new cooldown mechanism in Dependabot, allowing the tool...
Cybersecurity researchers have flagged a new software supply chain attack codenamed SleeperGem targeting the Ruby ecosystem after three malicious gems...
Ravie LakshmananJul 17, 2026Software Supply Chain / Malware Cybersecurity researchers have discovered a cluster of seven malicious npm packages targeting...
The Hacker NewsJul 15, 2026Web Security / Supply Chain Security A single approved marketing tag can quietly load fourth-party code...
Ravie LakshmananJul 10, 2026Software Supply Chain / Malware Unknown threat actors compromised the Injective Labs SDK project's GitHub repository and...
Ravie LakshmananJul 09, 2026Developer Security / Supply Chain Security Datadog Security Labs is warning of "several overlapping campaigns" that are...
The Hacker NewsJul 07, 2026AI Security / Software Supply Chain Software supply chain security was hard enough. Then AI joined...
Swati KhandelwalJun 30, 2026AI Security / Software Supply Chain The safety check that is supposed to stop an AI coding...
Cybersecurity researchers have flagged yet another evolution of the supply chain attack linked to the Mini Shai-Hulud, Miasma, and Hades...
Ravie LakshmananJun 24, 2026Open Source / Supply Chain Security Cybersecurity researchers have flagged a new class of CI/CD workflow weakness...
Ravie LakshmananJun 23, 2026Workflow Security / Software Supply Chain GitHub is moving to strengthen software supply chain security by updating...
Ravie LakshmananJun 17, 2026Vulnerability / Supply Chain Attack The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added a...
Ravie LakshmananJun 08, 2026Software Supply Chain / Malware Microsoft has announced that Visual Studio Code (VS Code) will apply a...
A new Mini Shai-Hulud supply chain attack campaign, codenamed Miasma, has compromised @redhat-cloud-services packages to steal credentials and secrets from...