Typosquatting 32
- 72 Malicious Open VSX Extensions Linked to GlassWorm Campaign Now Using Transitive Dependencies
- 5 Malicious Rust Crates Posed as Time Utilities to Exfiltrate .env Files
- SANDWORM_MODE: Shai-Hulud-Style npm Worm Hijacks CI Workflows and Poisons AI Toolchains
- PyPI Package Impersonates SymPy to Deliver Cryptomining Malware
- Malicious NuGet Package Typosquats Popular .NET Tracing Library to Steal Wallet Passwords
- Malicious Go Packages Impersonate Google's UUID Library and Exfiltrate Data
- Inside the GitHub Infrastructure Powering North Korea's Contagious Interview npm Attacks
- Malicious NuGet Packages Typosquat Nethereum to Exfiltrate Wallet Keys
- North Korea's Contagious Interview Campaign Escalates: 338 Malicious npm Packages, 50,000 Downloads
- Two Malicious Rust Crates Impersonate Popular Logger to Steal Wallet Keys
- Wallet-Draining npm Package Impersonates Nodemailer to Hijack Crypto Transactions
- Another Wave: North Korean Contagious Interview Campaign Drops 35 New Malicious npm Packages
- 2025 Blockchain and Cryptocurrency Threat Report: Malware in the Open Source Supply Chain
- Malicious Ruby Gems Exfiltrate Telegram Tokens and Messages Following Vietnam Ban
- Monkey-Patched PyPI Packages Use Transitive Dependencies to Steal Solana Private Keys
- The Landscape of Malicious Open Source Packages: 2025 Mid‑Year Threat Report
- Black Basta's Dependency Confusion Ambitions and Ransomware in Open Source Ecosystems
- Lazarus Strikes npm Again with New Wave of Malicious Packages
- Typosquatted Go Packages Deliver Malware Loader Targeting Linux and macOS Systems
- Go Supply Chain Attack: Malicious Package Exploits Go Module Proxy Caching for Persistence
- North Korean APT Lazarus Targets Developers with Malicious npm Package
- Gmail For Exfiltration: Malicious npm Packages Target Solana Private Keys and Drain Victims' Wallets
- Weaponizing OAST: How Malicious Packages Exploit npm, PyPI, and RubyGems for Data Exfiltration and Recon
- Skuld Infostealer Returns to npm with Fake Windows Utilities and Malicious Solara Development Packages
- Malicious Maven Package Impersonating 'XZ for Java' Library Introduces Backdoor Allowing Remote Code Execution
- Typosquatting Cryptographic Libraries: Malicious npm Packages Threaten Crypto Developers with Keylogging and Wallet Theft
- Malicious npm Packages Inject SSH Backdoors via Typosquatted Libraries
- Threat Actor Exposes Playbook for Exploiting npm to Build Blockchain-Powered Botnets
- Roblox Developers Targeted with npm Packages Infected with Skuld Infostealer and Blank Grabber
- Massive npm Malware Campaign Leverages Ethereum Smart Contracts To Evade Detection and Maintain Control
- Author Typosquatting on npm: Attackers Impersonate Sindre Sorhus with Malicious 'chalk-node' Package
- Typosquatting on PyPI: Malicious Package Mimics Popular 'browser-cookie3' Library to Steal Sensitive Data