#open-source-risks

[ follow ]
Information security
fromInfoQ
20 hours ago

Attacker Bought 30 WordPress Plugins on Flippa and Backdoored All of Them

Supply chain attacks exploit trust in software ecosystems, allowing attackers to inject malicious code into widely used plugins and packages.
Privacy professionals
fromCSO Online
9 months ago

Hacker inserts destructive code in Amazon Q as update goes live

Malicious actors exploit AI tools due to insufficient security measures, leading to serious vulnerabilities in software supply chains.
fromSecuritymagazine
10 months ago

New Research: Multi-Stage Malware Attack on Python Package Index Discovered

This incident underscores the growing sophistication of supply chain attacks, where seemingly trustworthy packages can deliver dangerous malware.
Information security
[ Load more ]