GlassWorm malware uses a Zig-based dropper to infect developer tools, stealing data and spreading across IDEs.
Malwarebytes recently uncovered a new malicious campaign targeting the Windows Update service. Focused on French-speaking users, the campaign uses layered obfuscation techniques to deliver multiple ...
Threat actors are exploiting the recent Claude Code source code leak by using fake GitHub repositories to deliver Vidar ...
GlassWorm uses a fake WakaTime VS Code extension to infect IDEs, deploy RATs, and steal data, prompting urgent credential ...
CERT-In flags multiple vulnerabilities in Google Chrome that could allow remote code execution and data theft, urging users ...
Adobe patches a critical PDF flaw exploited for months, allowing attackers to bypass sandbox protections and deliver malware.
Security teams are grappling with a major supply chain attack on Axios, a popular JavaScript library with over 100 million ...
Adobe has released an emergency security update for Acrobat Reader to fix a vulnerability, tracked as CVE-2026-34621, that ...
The widely used Axios HTTP client library, a JavaScript component used by developers, was recently hacked to distribute ...
IntroductionOn March 31, 2026, Anthropic accidentally exposed the full source code of Claude Code (its flagship ...
Attackers stole a long-lived npm token from the lead axios maintainer and published two poisoned versions that drop a ...
A missed step in a manual deployment process exposed the internal workings of one of AI's hottest coding tools—and briefly ...