HalluSquatting Exploits AI Coding Assistants to Deliver Malware
New research shows attackers can exploit predictable AI hallucinations to register fake repositories and trick coding assistants into executing malicious...
New research shows attackers can exploit predictable AI hallucinations to register fake repositories and trick coding assistants into executing malicious...
Socket uncovered Operation Muck and Load, a large GitHub-based malware campaign that used fake repositories, commit farming, and public dead...
Researchers say Silver Fox has expanded its malware arsenal with MODBEACON, a modular Rust-based framework built for encrypted communications, in-memory...
A threat actor claims EcoGPT exposed more than 20,000 shared AI conversations after an allegedly misconfigured Supabase database allowed unauthenticated...
A threat actor claims to have leaked a database affecting nearly 466,000 xPayrience users, including customer information, order records, and...
Data extortion has become one of the fastest-growing forms of cybercrime. Learn how modern cyber extortion works, what attackers steal,...
An exposed attacker server gave researchers a rare look inside WP-SHELLSTORM, a large-scale operation that allegedly compromised thousands of WordPress...
AssuranceAmerica has confirmed a data breach affecting approximately 6.99 million individuals after attackers accessed customer records containing driver's license and...
A threat actor claims to have stolen a large Nike customer database and internal application logs, although the authenticity of...
A threat actor claims to have stolen customer records, Salesforce supplier data, and source code from Alcon, although the authenticity...