
Device code phishing bypasses password stealing
The Microsoft 365 phishing campaign persuades victims to complete a real authentication process that authorizes an attacker-controlled device.

The Microsoft 365 phishing campaign persuades victims to complete a real authentication process that authorizes an attacker-controlled device.

RL has documented CVE-2026-46316, and developed two YARA rules to help detect exploits of the multi-tenant cloud vulnerability.

RL has discovered two social engineering attack techniques targeting users via short-form videos. Here’s how they work.

The attack is notable for its breadth, flooding npm with malicious package versions.

RL has discovered a new supply chain attack affecting 9.8M total downloads across Red Hat's Hybrid Cloud Console JavaScript ecosystem.

Analyzing C2 responses from compromised GitHub Actions linked a current threat to an earlier one, showing the value of retrohunting.

Learn how attackers are re-casting adults as minors to bypass recovery and lock users out.

RL documented 163 samples of the Linux exploit's new variants, active malware — and developed YARA rules.

Here’s what you need to know about the Linux kernel privilege escalation — and how to use YARA rules to get on top of it.

PromptMink has evolved into a malicious dependency in a package that allows access to crypto wallets and funds.

An attack targeting crypto developers has been respawned — with an LLC and new techniques.

The malicious campaign started with Trivy and Checkmarx and has shifted to LiteLLM — and now telnix. Here's how.

The final-stage malware in the Ghost campaign is a RAT designed to steal crypto wallets and sensitive data.

RL discovered two packages containing scripts that complete a typosquatting toolchain. Here's how it worked.

Threat actors targeted developers with a bogus package — a shift away from the recent crypto development hack focus.
Get your 14-day free trial of Spectra Assure for Software Supply Chain Security
Get Free TrialMore about Spectra Assure Free Trial