person · 3 records
Karlo Zanki

Malicious npm Package indexed-btree Hid Its Loader in Runtime Code
A malicious npm package named indexed-btree hid its execution logic within runtime code to bypass new npm security restrictions.
1 outlet Markets read

Security researchers identify 19 browser extensions with cryptocurrency draining capabilities
Security researchers identified 18 Chrome and 1 Edge extensions with cryptocurrency draining capabilities
1 outlet

Attackers target cPanel and WHM servers using compromised GitHub Actions repositories
Researchers report a large-scale campaign weaponizing compromised GitHub Actions repositories to target vulnerable cPanel and WebHost Manager servers for credential theft.
1 outlet Cyber read