Hola Browser Compromised to Deliver Cryptominer in Supply Chain Attack

Hola's CEO, Avi Raz Cohen, assured users that the company has taken swift action to prevent future breaches, rebuilding its distribution pipeline and implementing robust security measures. The move comes after a supply chain attack compromised the Hola Browser, secretly delivering a cryptominer to unsuspecting users.

https://osintsights.com/hola-browser-compromised-to-deliver-cryptominer-in-supply-chain-attack?utm_source=mastodon&utm_medium=social

#SupplyChainAttack #Cryptominer #HolaBrowser #MalwareOperations #EmergingThreats

Hola Browser Compromised to Deliver Cryptominer in Supply Chain Attack

Learn how Hola Browser was compromised to deliver cryptominer malware and what measures were taken to prevent future attacks - read the full incident report now.

OSINTSights

πŸ“° "Miasma" Worm Spreads Through npm via "Phantom Gyp" Technique, Stealing Dev Secrets

🚨 A self-spreading worm named 'Miasma' is hitting the npm registry! It uses a novel 'Phantom Gyp' technique to bypass security and steal developer secrets for AWS, GCP, GitHub & more. Check your dependencies now! πŸ› #SupplyChainAttack #npm #Miasma

🌐 cyber[.]netsecops[.]io

πŸ”— https://cyber.netsecops.io/articles/miasmanpm-supply-chain-attack-self-spreading-worm-via-phantom-gyp/?utm_s…

πŸŽ™οΈ The WP Minute+ #podcast:
Inside the Surge of WordPress Supply Chain Attacks
Host: Eric Karkovack #EricKarkovack
at @thewpminute.com
Feat.: Anchor Hosting owner Austin Ginder
#Wordpress #SupplyChainAttack #Vulnerabilities

https://thewpminute.com/inside-the-surge-of-wordpress-supply-chain-attacks/

Malicious code hid inside Red Hat’s npm packages and spread to steal cloud keys

https://www.martincid.com/technology-sv/red-hat-npm-packages-compromised/

#Cybersecurity #SupplyChainAttack #Npm

Malicious code hid inside Red Hat’s npm packages and spread to steal cloud keys

Security researchers found malicious code buried inside more than 30 of Red Hat's official software packages, built to harvest cloud and developer credentials.

Martin Cid Magazine

Miasma Supply Chain Attack Targets Red Hat npm Packages

A new supply-chain campaign, codenamed Miasma, has compromised multiple Red Hat npm packages to steal sensitive credentials and deliver a self-propagating worm, putting developer machines at risk. This sneaky attack uses clever tactics like install-time execution and encrypted exfiltration to harvest secrets and spread its reach.

https://osintsights.com/miasma-supply-chain-attack-targets-red-hat-npm-packages?utm_source=mastodon&utm_medium=social

#SupplyChainAttack #Npm #RedHat #CredentialHarvesting #CicdTargeting

Miasma Supply Chain Attack Targets Red Hat npm Packages

Learn about the Miasma supply chain attack targeting Red Hat npm packages, stealing credentials and delivering malware - protect your dev environment now with expert insights.

OSINTSights

Donating to @libreoffice.

Very important #opensource project, especially now that things are moving in the #digitalsovereignty #SupplyChainattack #enshittification #fuckmicrosoft #FuckGoogle areas.

πŸ“° GlassWorm Malware Infrastructure Dismantled in Coordinated Takedown

βœ… Takedown! CrowdStrike, Google & Shadowserver disrupt the "GlassWorm" malware C2 infrastructure. πŸ‘ The campaign targeted developers via malicious VS Code extensions & npm packages to steal credentials. #SupplyChainAttack #CyberSecurity #Takedown

🌐 cyber[.]netsecops[.]io

πŸ”— https://cyber.netsecops.io/articles/glassworm-malware-takedown-disrupts-developer-supply-chain-attacks/?utm_source=mastodon&u…

πŸ“° New npm Typosquatting Campaign Pushes Malware to Steal AWS and CI/CD Secrets

Microsoft uncovers a typosquatting campaign on npm by actor 'vpmdhaj'. 14 malicious packages use `preinstall` hooks to steal AWS credentials, Vault tokens, and other CI/CD secrets from developers. ⚠️ #SupplyChainAttack #npm #InfoSec

🌐 cyber[.]netsecops[.]io

πŸ”— https://cyber.netsecops.io/articles/npm-typosquatting-campaign-steals-cloud-cicd-secrets/?utm_source=mastodon&utm_medium=social&utm_campaign=daily

Malicious NuGet Package Exfiltrates Sicoob Banking Credentials

A malicious NuGet package, masquerading as a C# SDK for a major Brazilian financial system, was designed to steal sensitive banking credentials, including client IDs, PFX passwords, and certificate bytes, from unsuspecting developers. This rogue package, downloaded nearly 500 times, put automation and security at risk.

https://osintsights.com/malicious-nuget-package-exfiltrates-sicoob-banking-credentials?utm_source=mastodon&utm_medium=social

#MaliciousNugetPackage #SupplyChainAttack #CredentialTheft #EmergingThreats #Brazil

Malicious NuGet Package Exfiltrates Sicoob Banking Credentials

Learn how malicious NuGet package Sicoob.Sdk steals banking credentials. Discover the risks and take action to secure your development process now effectively.

OSINTSights
Supply chain attacks hide malicious code inside the software you trust

Most software is assembled from thousands of borrowed components, and attackers have learned it is easier to poison a part than to break the whole. Here is how

Martin Cid Magazine