SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines
What's new: A new software supply chain attack, codenamed SleeperGem, has been identified targeting the Ruby ecosystem. Three malicious RubyGems...
What's new: A new software supply chain attack, codenamed SleeperGem, has been identified targeting the Ruby ecosystem. Three malicious RubyGems...
What's new: Hugging Face, the world's largest AI model repository, has reported a breach executed by an autonomous AI agent....
What's new: A new Go-based botnet named NadMesh has emerged, targeting exposed AI services to harvest cloud keys and Kubernetes...
What's new: Researchers have identified seven malicious npm packages targeting the Vite frontend tooling ecosystem, part of a software supply...