A suspected North Korea-linked actor is behind a supply chain attack on the widely used library.
Related Articles
All CyberSecurityDive →Startup firm called Factory disrupts campaign designed to hijack development platform
Factory, a San Francisco-based startup, said it disrupted an attack by at least one state-linked threat group that attempted to hijack its software development platform…
Ransomware victims fail to fix flaws that exposed them
Many organizations still aren’t securing their email or patching vulnerabilities after recovering from attacks, a new report found. Source link
Bipartisan bill proposes $50M cyber threat analysis program for energy sector
Bipartisan legislation proposed in the Senate would allocate $50 million from fiscal year 2025 to 2029 to improve cyber security information sharing across the U.S.…
Cybercrime groups speed up initial access handoff through planning, coordination
A report by Google Threat Intelligence Group also shows voice-based phishing has surged amid a rise in social engineering tactics. Source link
Enterprises report increasing budgets for security training in AI and other critical topics
Finding the time to train employees remains the biggest impediment to programs’ success, according to a new report. Source link
SonicWall says recent attack wave involved previously disclosed flaw, not zero-day
SonicWall said late Wednesday that a wave of attacks targeting SonicWall 7 customers since July involved a previously disclosed improper access-control vulnerability and not a…

