The company took systems offline globally after hackers exfiltrated data and deployed file-encrypting ransomware.
Hi, what are you looking for?
The company took systems offline globally after hackers exfiltrated data and deployed file-encrypting ransomware.
The flaws could allow attackers to inject malicious code, leading to information disclosure and code execution.
Over 400 malicious versions of 170 packages were published as part of the new Mini Shai-Hulud campaign.
Using a vulnerability in the portal, hackers accessed names, addresses, email addresses, and phone numbers.
The incident occurred on April 20 and did not affect customer data in the company’s production and staging environments.
A malicious version of the plugin was published to the Jenkins Marketplace late last week.
The second iteration of the German-speaking online crime marketplace had over 22,000 users and more than 100 sellers.
Victims span across the aviation, critical infrastructure, energy, logistics, public administration, and technology sectors.
Hackers accessed one of the company’s AWS accounts and compromised AI provider secrets stored in Braintrust.
The malware framework targets web applications and cloud environments, including AWS, Docker, Kubernetes, and more.
Lax extension permissions and improper trust implementation allow attackers to inject prompts in the Claude Chrome extension.
The company is expanding its platform’s capabilities with the acquisition of SecureIQx and Korbit.ai.
The fresh browser update resolves critical-severity integer overflow and use-after-free vulnerabilities.
The software developer has identified the impacted systems, removed potentially compromised files, and validated installation packages.
Successful exploitation of the flaws could lead to code execution, server-side request forgery attacks, and denial-of-service conditions.
Attackers could inject prompts into a GitHub issue and take over the AI agent designed to automatically triage the issue.
The startup will invest in expanding its training categories, optimizing video generation, and growing its partnership ecosystem.
Likely perpetrated by MuddyWater, the attack combined social engineering, persistence, credential harvesting, and data theft.
The persistent, evasive implant provides remote access, surveillance, and credential exfiltration capabilities.
While trojanized Daemon Tools versions were installed worldwide, a sophisticated backdoor was dropped only on a dozen systems.