A new typosquatting campaign using the open-source package manager, NuGet, has been identified as potentially infecting Windows systems with malware. Packages employed in the campaign use MSBuild integration to run codes in a stealthy manner. Though this feature enhances the building and packaging process for software projects, it opens up a new vulnerability for script execution during a package’s installation. This is the first documented instance of threat actors exploiting this feature in NuGet packages.

Kaspersky Focuses On Securing Large Language Models With New Course
A new course from the Kaspersky AI Technology Research Center provides cybersecurity professionals with the necessary knowledge to understand, evaluate, and defend against vulnerabilities in