Tag Archives: Supply chain attack
Bitwarden CLI Compromise: Malicious npm Supply Chain Attack Discovered
A critical Bitwarden CLI compromise has been detected in the npm ecosystem, where attackers breached the CI/CD pipeline to inject credential-stealing code into version 2026.4.0. Continue reading
Social Engineering Trap: The ‘Feel Free to Look for Backdoors’ Job Scam
A sophisticated new social engineering trap targets developers with a psychological ‘look for backdoors’ ruse, resulting in the theft of passwords and crypto wallets within seconds. Continue reading
Vercel Security Breach: Data Exposed via Third-Party Compromise
The latest Vercel security breach highlights the risks of third-party vulnerabilities after attackers gained access to sensitive employee records and internal database information. Continue reading
Vercel Infrastructure Breach Linked to AI Supply Chain Compromise
A major Vercel infrastructure breach has been confirmed following an AI supply chain compromise via Context.ai, with attackers claiming access to 93GB of data. Continue reading
CPUID Project Breach: STX RAT Distributed Through Poisoned Links
Security alert: The recent CPUID project breach resulted in the distribution of the STX RAT. Learn if your systems are at risk from this supply-chain attack. Continue reading
OpenAI Security Update: Urgent Patch for macOS Desktop Apps
OpenAI has issued an urgent OpenAI security update for all macOS applications following a supply chain compromise involving the Axios library. Continue reading
Supply Chain Breach Impacts European Commission: 92 GB Data Stolen
A massive supply chain breach has compromised the European Commission, with attackers stealing 92 GB of sensitive data through a malicious update in an open-source tool. Continue reading
OpenAI macOS Security Breach: Developer Library Supply Chain Attack
OpenAI has confirmed a major OpenAI macOS security breach involving a supply chain attack on its developer library. Update your app immediately to ensure protection. Continue reading
Supply Chain Attack Compromises CPU-Z and HWMonitor Installers
A recent supply chain attack has compromised the official CPUID website, distributing trojanized versions of CPU-Z and HWMonitor to users. Continue reading