Every day, thousands of new code packages emerge on npm; while previously available for installation almost immediately...
GitHub
GitHub now lets owners of public repositories cap active pull requests from users without write access. The...
Yesterday, the TeamPCP collective—a threat actor specializing in supply chain incursions—released the source code for Shai-Hulud, an...
Microsoft has unveiled a rare fragment of early computing history on GitHub: the source code for the...
A new actor has emerged within cyberspace—Water Curse, a threat group that since March 2023 has been...
In the spring of 2025, cybersecurity experts at Check Point uncovered a sophisticated malware campaign specifically targeting...
In recent times, cybercriminals have increasingly shifted their focus from deploying malware to employing subtle manipulations rooted...
A recently uncovered malicious campaign is leveraging GitHub as a trap for security professionals, gamers, and even...
GitHub has encountered a critical vulnerability within its MCP integration system, enabling malicious actors to access data...
An employee of xAI inadvertently published a private API key on GitHub, which, for two months, granted...
At the beginning of 2024, a California-based programmer developed a malicious application disguised as an artificial intelligence...
Much like EA’s decision to open-source several of its accessibility-related gaming patents for public use, Ubisoft has...
A new strain of malicious software known as Neptune RAT is being distributed through popular platforms such...