#typosquatting

[ follow ]
#software-security
fromInfoWorld
2 months ago
JavaScript

Malicious package found in the Go ecosystem

A backdoored typosquat package was found in the Go ecosystem, highlighting dangers in package integrity.
The vulnerability lasted over three years with extensive dependencies affected.
fromInfoWorld
2 months ago
JavaScript

Malicious package found in the Go ecosystem

A backdoored typosquat package was found in the Go ecosystem, highlighting dangers in package integrity.
The vulnerability lasted over three years with extensive dependencies affected.
more#software-security
#cybersecurity
Growth hacking
fromDevOps.com
1 month ago

Bad Actor Targets Linux, macOS Developers with Typosquatted Go Packages - DevOps.com

A new typosquatting campaign targets Go developers, spreading malware through malicious packages that impersonate legitimate libraries.
JavaScript
fromThe Hacker News
4 months ago

Thousands Download Malicious npm Libraries Impersonating Legitimate Tools

Malicious typosquats of legitimate npm packages have been discovered, posing significant risks to developers.
JavaScript
fromTechzine Global
5 months ago

Hackers abuse NPM code registries via Ethereum network

NPM registries are under attack from malicious packages leveraging typosquatting, targeting developers' systems.
287 malicious packages discovered affect prominent libraries.
Hackers utilize Ethereum smart contracts to obscure their true origins.
fromSecuritymagazine
8 months ago
Information security

New research: Malicious actors are imitating tech companies

Malicious actors are increasingly using typosquatting to impersonate tech companies and compromise corporate systems.
fromDevOps.com
2 months ago
JavaScript

Typosquat Supply Chain Attack Targets Go Developers - DevOps.com

A Go database module backdoor highlights risks posed by typosquatting and supply chain vulnerabilities.
fromSecuritymagazine
5 months ago
Information security

Malicious Python Package Index steals Amazon Web Services credentials

A malicious Python package called 'fabrice' has exfiltrated AWS credentials, highlighting the risks of typosquatting in the developer community.
Growth hacking
fromDevOps.com
1 month ago

Bad Actor Targets Linux, macOS Developers with Typosquatted Go Packages - DevOps.com

A new typosquatting campaign targets Go developers, spreading malware through malicious packages that impersonate legitimate libraries.
JavaScript
fromThe Hacker News
4 months ago

Thousands Download Malicious npm Libraries Impersonating Legitimate Tools

Malicious typosquats of legitimate npm packages have been discovered, posing significant risks to developers.
JavaScript
fromTechzine Global
5 months ago

Hackers abuse NPM code registries via Ethereum network

NPM registries are under attack from malicious packages leveraging typosquatting, targeting developers' systems.
287 malicious packages discovered affect prominent libraries.
Hackers utilize Ethereum smart contracts to obscure their true origins.
fromSecuritymagazine
8 months ago
Information security

New research: Malicious actors are imitating tech companies

Malicious actors are increasingly using typosquatting to impersonate tech companies and compromise corporate systems.
fromDevOps.com
2 months ago
JavaScript

Typosquat Supply Chain Attack Targets Go Developers - DevOps.com

A Go database module backdoor highlights risks posed by typosquatting and supply chain vulnerabilities.
fromSecuritymagazine
5 months ago
Information security

Malicious Python Package Index steals Amazon Web Services credentials

A malicious Python package called 'fabrice' has exfiltrated AWS credentials, highlighting the risks of typosquatting in the developer community.
more#cybersecurity
Miscellaneous
fromFast Company
5 months ago

Scammers are making thousands of dollars through blockchain typosquatting

Typosquatting scams in crypto are exploiting small typing errors, resulting in significant financial losses for unsuspecting senders.
JavaScript
fromTheregister
5 months ago

Typosquat campaign impersonates 287+ popular npm packages

A typosquatting campaign targets developers by distributing malicious npm packages disguised as popular libraries, complicating detection through new blockchain-based command control.
[ Load more ]