Security researchers from ReversingLabs have uncovered a series of high-profile compromises targeting popular open-source packages, highlighting the growing risk of malicious code infiltration in widely-used software tools. The researchers discovered cryptomining malware had been injected into packages associated with rspack and vant. The compromises of these frequently downloaded tools were made possible using stolen npm tokens.
Clop Ransomware is Now Blackmailing 66 Cleo Data-Theft Victims, Reports DataBreaches.Net
Right, let’s sit down for a chat about the state of play in cybersecurity. You know that old saying about ‘an Englishman’s home is his