In The News
August 31, 2023

Bleeping Computer: Lazarus hackers deploy fake VMware PyPI packages in VMConnect attacks

North Korean state-sponsored hackers have uploaded malicious packages to the PyPI (Python Package Index) repository
August 25, 2023

Dark Reading: Luna Grabber Malware Targets Roblox Gaming Devs

Roblox gaming developers are lured in by a package that claims to create useful scripts to interact with the Roblox website
August 23, 2023

SC Magazine: Someone is targeting Roblox developers with info-stealing malware

The campaign, discovered by researchers at ReversingLabs, uses typo-squatting and a number of sophisticated obfuscation tactics to entice users into downloading fake versions of commonly used software on npm, a popular open source software library.
August 14, 2023

Cybersecurity Insiders: Supply chain attacks demand a 3rd party risk re-think

Looked at from one angle, the recent attack on JumpCloud, a cloud-based identity and access management provider, was unsurprising.
August 6, 2023

Hack Read: VMCONNECT: Malicious PyPI Package Mimicking Common Python Tools

Threat researchers at ReversingLabs, a software supply chain security and malware analysis platform, have discovered a malicious new PyPI package dubbed VMConnect on the Python Package Index (PyPI) repository.