In The News
November 1, 2023

CSO Online: Malicious package campaign on NuGet abuses MSBuild integrations

Attackers are exploiting for the first time a known security risk in a popular MSBuild feature to place hard-to-detect malicious files in the .NET repository.
October 31, 2023

Bleeping Computer: Malicious NuGet packages abuse MSBuild to install malware

A new NuGet typosquatting campaign pushes malicious packages that abuse Visual Studio's MSBuild integration to execute code and install malware stealthily.
October 5, 2023

Security Week: Hundreds Download Malicious NPM Package Capable of Delivering Rootkit

A recently observed malicious campaign has relied on typosquatting to trick users into downloading a malicious NPM package that would infect their systems with a rootkit, supply chain security firm ReversingLabs warns.
October 4, 2023

The Hacker News: Rogue npm Package Deploys Open-Source Rootkit in New Supply Chain Attack

A new deceptive package hidden within the npm package registry has been uncovered deploying an open-source rootkit called r77, marking the first time a rogue package has delivered rootkit functionality.
October 2, 2023

SC Media: Why software teams have to change their focus from vulnerabilities to malware

Nearly 90% of companies report they have detected a security issue in their software supply chain in the last 12 months.
September 1, 2023

SC Media: VMConnect campaign linked to North Korea’s Lazarus Group

Three newly discovered malicious Python packages posted to the Python Package Index (PyPI) are now believed to be part of the VMConnect campaign and have also been tied to the North Korean Lazarus Group.