
GitHub Developers Targeted by North Korea’s Lazarus Group
The Lazarus Group is behind a social engineering campaign that uses repository invitations and malicious npm packages to target developers on GitHub ... Read More

Dell Adds Orchestration Capabilities to Data Protection Platform
Dell Technologies added orchestration capabilities to its data protection software that makes it simpler for IT teams to schedule backup ... Read More

Software Supply Chain Attackers Targeting Banks, Checkmarx Says
Two banks earlier this year were the targets of open source supply chain attacks, the first of their kind in the industry ... Read More

The Rise of QR Codes Spurs Rise in ‘Fresh Phish’
Miscreants have ramped up their use of QR codes to phish for credentials, according to INKY threat researchers ... Read More

New P2P Worm Puts Windows and Linux Redis Servers in its Sights
A new peer-to-peer (P2P) worm, P2PInfect, is spreading across instances of the Redis open source database software in the cloud ... Read More

Why Generative AI is a Threat to API Security
Generative AI can be used to amplify cybercriminals' nefarious deeds against web applications, especially those that rely heavily on APIs ... Read More

Attacker ID’ed After Infecting Own Computer With Malware
A threat actor that goes by the name of “La_Citrix” inadvertently infected his own computer. Cyberthreat research firm sent his information on to law enforcement ... Read More

An ‘Alarming Escalation’ of Sophistication in DDoS Attacks, Cloudflare Says
Distributed DDoS attacks are becoming increasingly sophisticated and complex, making an already-expanding threat landscape even more challenging ... Read More

Biden Admin. Adds ‘Mercenary Spyware’ Firms to Ban List
European cousins Intellexa and Cytrox essentially banned by Commerce Dept. — Predator/ALIEN not welcome in U.S ... Read More