Researchers link the compromise to a North Korean adversary and warn the impacts could be wide ranging.
Browsing: Supply
Malicious versions of the highly popular Axios NPM library were distributed to millions in a fresh supply chain attack blamed…
Ravie LakshmananApr 01, 2026Threat Intelligence / Software Security Google has formally attributed the supply chain compromise of the popular Axios…
The popular HTTP client known as Axios has suffered a supply chain attack after two newly published versions of the…
The US Cybersecurity and Infrastructure Security Agency (CISA) has added two new vulnerabilities to its Known Exploited Vulnerabilities catalog: CVE-2026-33017,…
A slew of supply chain attacks against popular open source tools and packages appears to have been orchestrated by TeamPCP,…
A threat actor compromised Aqua Security’s Trivy open source vulnerability scanner in a supply chain attack that started in late…
Ravie LakshmananMar 21, 2026Malware / Threat Intelligence The threat actors behind the supply chain attack targeting the popular Trivy scanner…
Device supply chain security firm Eclypsium has raised $25 million in a strategic funding round that brings the total raised…
“This is no longer a cyclical imbalance. It is a structural reallocation of the memory market driven by AI infrastructure…
