The TeamPCP Worm May Have Created a Much Bigger Supply Chain Problem
The TeamPCP-linked GitHub breach, originating from a malicious Visual Studio Code extension, reveals an evolving software supply chain threat leveraging...
The TeamPCP-linked GitHub breach, originating from a malicious Visual Studio Code extension, reveals an evolving software supply chain threat leveraging...
WisERP, a U.S.-based ERP platform, faces allegations of a cyber breach exposing over 1.5 million customer records, including personal and...
A threat actor claims to have breached a 2022 Reltio customer database backup, exposing nearly 880,000 records containing sensitive identity,...
GitHub confirmed unauthorized access to about 3,800 internal repositories through a malicious Nx Console extension linked to the Mini Shai-Hulud...
Grafana Labs confirmed credential compromise allowed unauthorized access to its GitHub, resulting in codebase theft and extortion attempt by the...
Three major Linux kernel privilege escalation vulnerabilities called Copy Fail, Dirty Frag, and Fragnesia have emerged, affecting major distributions and...
OpenAI confirmed that two employee devices were compromised in the Mini Shai-Hulud supply-chain attack, exposing some internal source code and...
A threat actor claims to have breached ReferralRock, exposing over 11 million records containing customer, referral, payout, and marketing data,...
TeamPCP claims to have stolen and is selling internal repositories and source code from French AI company Mistral AI, highlighting...
An alleged leak of over 10,000 files from Lightning AI's internal repositories surfaced following a PyTorch Lightning supply-chain compromise involving...
Tools and intelligence from BreachNews.