TeamPCP hackers target Mistral AI code repos for sale

Hackers from TeamPCP are demanding $25,000 for nearly 5 gigabytes of stolen Mistral AI code, threatening to leak it for free if they don't find a buyer within a week. The group claims to have snagged around 450 internal repositories, including sensitive source code used for training and model delivery.

https://osintsights.com/teampcp-hackers-target-mistral-ai-code-repos-for-sale?utm_source=mastodon&utm_medium=social

#Teampcp #Ransomware #EmergingThreats #MistralAi #CodeRepositories

TeamPCP hackers target Mistral AI code repos for sale

Hackers demand $25k for stolen Mistral AI code repos, threatening to leak data if unsold within a week - read the latest on TeamPCP's brazen cyber heist now.

OSINTSights
NPM flooded with malicious packages downloaded more than 86,000 times https://arstechni.ca/ej86 #codedependencies #coderepositories #phantomraven #Security #Biz&IT #npm
NPM flooded with malicious packages downloaded more than 86,000 times

Packages downloaded from NPM can fetch dependencies from untrusted sites.

Ars Technica
Destructive malware available in NPM repo went unnoticed for 2 years https://arstechni.ca/xDjo #coderepositories #Security #malware #Biz&IT #npm
Destructive malware available in NPM repo went unnoticed for 2 years

Payloads were set to spontaneously detonate on specific dates with no warning.

Ars Technica
Zapier says someone broke into its code repositories and may have accessed customer data

Zapier is notifying customers about a “security incident,” which involved an unauthorized user gaining access to the company’s code repositories and “certain custom information.”

The Verge
Octopus Scanner Sinks Tentacles into GitHub Repositories

At least 26 different open-source code repositories were found to be infected with an unusual attack on the open-source software supply chain.

Threatpost - English - Global - threatpost.com
How to Get a Handle on Patch Management - As the number vulnerabilities hit a historic high, battle-worn security teams are upping their pat... more: https://threatpost.com/how-to-handle-patch-management/147909/ #criticalinfrastructure #unpatchedvulnerability #coderepositories #vulnerabilities #patchmanagement #cloudsecurity #cve-2019-0708 #websecurity #stagefright #zipslipflaw #devil’sivy #devsecops #bluekeep #patching #videolan #hacks
How to Get a Handle on Patch Management

As the number vulnerabilities hit a historic high, battle-worn security teams are upping their patching game.

Threatpost - English - Global - threatpost.com