1.
2.
4.
A hacker group is poisoning open source code at an unprecedented scale
(arstechnica.com)
6.
GitHub links repo breach to TanStack npm supply-chain attack
(bleepingcomputer.com)
7.
8.
GitHub confirms breach of 3,800 repos via malicious VSCode extension
(news.ycombinator.com)
9.
10.
Grafana breach caused by missed token rotation after TanStack attack
(bleepingcomputer.com)
11.
12.
GitHub confirms breach of 3,800 repos via malicious VSCode extension
(bleepingcomputer.com)
13.
GitHub investigates internal repositories breach claimed by TeamPCP
(bleepingcomputer.com)
14.
Leaked Shai-Hulud malware fuels new npm infostealer campaign
(bleepingcomputer.com)
15.
TeamPCP hackers advertise Mistral AI code repos for sale
(bleepingcomputer.com)
16.
Official CheckMarx Jenkins package compromised with infostealer
(bleepingcomputer.com)
17.
18.
After Replacing TeamPCP Malware, 'PCPJack' Steals Cloud Secrets
(darkreading.com)
19.
Hackers hack victims hacked by other hackers
(techcrunch.com)
20.
New PCPJack worm steals credentials, cleans TeamPCP infections
(bleepingcomputer.com)
21.
TeamPCP Hits SAP Packages With 'Mini Shai-Hulud' Attack
(darkreading.com)
22.
Official SAP npm packages compromised to steal credentials
(bleepingcomputer.com)
23.
Broken VECT 2.0 ransomware acts as a data wiper for large files
(bleepingcomputer.com)
24.
Hackers are exploiting a critical LiteLLM pre-auth SQLi flaw
(bleepingcomputer.com)
25.
Checkmarx confirms LAPSUS$ hackers leaked its stolen GitHub data
(bleepingcomputer.com)
26.
New npm supply-chain attack self-spreads to steal auth tokens
(bleepingcomputer.com)
27.
28.
Blast Radius of TeamPCP Attacks Expands Amid Hacker Infighting
(darkreading.com)
29.
CERT-EU: European Commission hack exposes data of 30 EU entities
(bleepingcomputer.com)
30.
Mercor says it was hit by cyberattack tied to compromise LiteLLM
(news.ycombinator.com)
Today's top topics:
google
spacex
zdnet
apple
chatgpt
microsoft
android authority
samsung
artificial intelligence
macos