Supply Chain Attack Targets JavaScript’s Lottie-Player
On October 30, 2024, a supply chain attack was initiated against the popular JavaScript library lottie-player, injecting malicious code that populates a Web3 wallet connection…
On October 30, 2024, a supply chain attack was initiated against the popular JavaScript library lottie-player, injecting malicious code that populates a Web3 wallet connection…
Mexico faces an increasingly complex cyber threat landscape, including ransomware, state-sponsored espionage, financial malware, data breaches, hacktivism, and cyber-enabled organized crime. Its 2025–2030 National Cybersecurity…
More tools. More alerts. More late nights. And yet, the incidents that keep blowing up your week rarely start with some flashy, sophisticated exploit. They…
Healthcare and services provider Nutex is investigating a data breach incident where an unauthorized third party exfiltrated information from company servers. The organization has disclosed the…
Alice, the AI trust, safety, and security company formerly known as ActiveFence, has closed a $140 million funding round led by Apax Digital Funds, with…
I was on my laptop, as I often am when there’s rubbish on telly, and found myself wondering what characters are allowed in a tag.…
Widespread Infrastructure Breaches and Novel AI Threats Several significant security breaches and new exploitation patterns are highlighted in the Check Point Research threat bulletin, which…
This story was produced in partnership with Injustice Watch, a nonprofit newsroom in Chicago focused on the court system. Rolando Perez Samayoa had come to…
ToxNetV2, an AArch64 Linux peer-to-peer botnet, integrates a large language model into its controller workflow to turn botnet and host telemetry into proposed operational actions.…
In 2011, when Wendy Nather was at 451 Research, she coined the term Security Poverty Line, the line below which an organization cannot be effectively secured. The arrival…
Police across 22 countries arrested 58 people and identified 263 suspects during an eight-month INTERPOL operation targeting West African organized crime groups. Suspects detained in…
A new type of prompt injection attack shows why giving AI assistants access to browsers, code tools, and private data deserves extra caution. AI researchers…