#supply-chain-abuse

[ follow ]
fromTechRepublic
1 day ago

Hugging Face Repositories Abused in New Android Malware Campaign

Cybersecurity researchers at Bitdefender have uncovered a massive campaign in which attackers are using Hugging Face's trusted infrastructure to host and spread a malicious Android Remote Access Trojan (RAT). By hiding their malicious code on a platform used by millions of developers, the attackers managed to fly under the radar of traditional security filters. The attack doesn't start with a shady link from a dark corner of the web.
Information security
Information security
fromInfoWorld
2 months ago

North Korea's 'Job Test' trap upgrades to JSON malware dropboxes

State-linked attackers target developers by weaponizing benign developer platforms and obfuscated payloads to exfiltrate sensitive files and system secrets.
[ Load more ]