LG monitors receive an app via Windows Update that displays McAfee advertising with automatic renewal to a paid subscription on 31 out of 32 system startups.
Attackers can compromise developer environments through classic, easily exploitable bugs with minimal user interaction and steal all stored secrets and source code.
Approved tracking code can lead to uncontrolled data access through fourth-party layers and should be minimized through strict inventory management and controls.
A compromised Jscrambler npm package containing infostealer malware was distributed by attackers in the npm registry and downloaded nearly 1,500 times.
GuardFall enables attackers to inject malicious commands into AI agents through Bash tricks that circumvent text-based security filters by expanding the harmful commands only after internal inspection by the shell.
GuardFall exploits decades-old Bash techniques such as quoting tricks and environment variables to bypass security filters and execute arbitrary commands in AI agents.
The malware in jscrambler 8.14.0 is activated by the preinstall hook without explicit import or CLI command — installation alone is sufficient for execution.
The malware in jscrambler 8.14.0 is activated by the preinstall hook without explicit import or CLI command—installation alone is sufficient for execution.
Malware in jscrambler 8.14.0 is activated via the preinstall hook without explicit import or CLI command—installation alone is sufficient for execution.