The attack is the latest example of hackers’ intense focus on open-source packages.
Related Articles
All CyberSecurityDive →Defense contractors’ CMMC confidence lags, even as self-assessments improve
A “confidence disconnect” is plaguing the industry, a consulting firm said. Source link
Google acquisition of Wiz driven by enterprise embrace of multicloud
After previously being left at the altar, Alphabet Inc. reached a deal Tuesday through its Google business to buy Wiz for $32 billion in an…
Vulnerability exploitation surges often precede disclosure, offering possible early warnings
Organizations can get ahead of major flaws with the right threat intelligence, according to a new report. Source link
CISA pledges robust support for funding, further development of CVE program
The Cybersecurity and Infrastructure Security Agency said it remains firmly committed to supporting and further enhancing the Common Vulnerabilities and Exposures program, which is a…
Preemptive security predicted to constitute about half of IT security spending by 2030
Preemptive cybersecurity solutions will account for about half of all IT security spending by the year 2030, a significant increase from its 5% share in…
How agentic endpoint security shuts down IDE-based supply chain attacks
Attention shifts from EDR to Agentic Endpoint Security to close visibility gaps that AI can exploit. Source link

