Sonatype, a software supply chain security firm, has discovered 17,954 open-source malware packages in Q1 2025, revealing a surge in software supply chain attacks. Over half of these malware threats were aimed at extracting sensitive data from software developers, according to the company’s Open Source Malware Index.

ELFDICOM: PoC Malware Polyglot Exploiting Linux-Based Medical Devices
A serious vulnerability in DICOM, a standard medical imaging file protocol, allows attackers to embed malicious codes in legitimate medical files used in healthcare. Despite