News

The malicious JavaScript code ("bundle.js") injected into each of the trojanized package is designed to download and run ...
Security researchers have identified at least 187 npm packages compromised in an ongoing supply chain attack. The coordinated ...
AsyncRAT exploits ConnectWise ScreenConnect via fileless loader, stealing credentials and crypto data, maintaining ...
Anthropic investigates alarming AI abuse case where hacker automated entire cybercrime campaign using Claude, stealing ...
A JavaScript supply chain attack has delivered a crypto-clipper via 18 npm packages; Ledger’s CTO has warned ...
The supply chain npm attack did not steal millions in crypto, despite initial fears. The wallets used in the attack only ...
Decentralized finance (DeFi) platform LI.FI protocol has been hit by a roughly $11 million exploit following a series of suspicious withdrawals, on-chain data shows. "Please do not interact with any ...
The $10 million Ronin bridge exploit on Aug. 6 was caused by a faulty upgrade deployment script, according to a report from blockchain security firm Verichains. The upgrade reduced the voting ...
Bybit's CEO said the hackers breached multisig cold wallet and moved all the $ETH Ethereum was the hardest-hit crypto asset in the exploit as per Nansen data Bybit ...
A hack that lets iOS users trick the App Store into giving them in-app purchases for free has gone public, potentially costing app makers revenue and causing Apple a major headache. The exploit was ...