The attack is the latest example of hackers’ intense focus on open-source packages.
Related Articles
All CyberSecurityDive →CISA details security lapses that led to GitHub leak of passwords, cloud access keys
Weak security controls around the use of public GitHub code repositories allowed a contractor for the Cybersecurity and Infrastructure Security Agency (CISA) to accidentally leak…
Businesses fear AI is exposing them to more attacks
Listen to the article 2 min This audio is auto-generated. Please let us know if you have feedback. Dive Brief: Artificial intelligence–powered attacks are the…
Klue investigating supply chain attack that targeted Salesforce integrations
Customer data from several prominent cybersecurity firms was among that of hundreds of potential enterprise victims. Source link
Research shows LLMs can conduct sophisticated attacks without humans
Carnegie Mellon University researchers have demonstrated that large language models can autonomously plan and carry out sophisticated cyberattacks without human intervention. The research, conducted in…
Sharp rise in AI adoption for cyber defense exposes major governance gap
A report by the SANS Institute indicates a split between senior security leaders and frontline practitioners. Source link
Corporate workers willing to use shadow AI to enhance speed
About six of every 10 corporate employees are willing to use shadow AI tools if it helps them meet work deadlines, according to a report…

