GitHub fixes RCE flaw that gave access to millions of private repos Cybersecurity April 29, 2026 In early March, GitHub patched a critical remote code execution vulnerability (CVE-2026-3854) that could have allowed attackers to access millions of private…
GlassWorm malware hits 400+ code repos on GitHub, npm, VSCode, OpenVSX Cybersecurity March 18, 2026 The GlassWorm supply-chain campaign has returned with a new, coordinated attack that targeted hundreds of packages, repositories, and extensions on…
GlassWorm Attack Uses Stolen GitHub Tokens to Force-Push Malware Into Python Repos Cybersecurity March 17, 2026 Ravie LakshmananMar 16, 2026Malware / Cryptocurrency The GlassWorm malware campaign is being used to fuel an ongoing attack that leverages…