Looks like the Arch Linux AUR (Arch User Repository) needs some better security and package checks - as some malicious users ...
A phishing kit subverting Microsoft’s legitimate authentication flow lets attackers break into accounts without stealing ...
Mastra npm packages added easy-day-js malware, exposing developer systems and CI runners to infostealer risks.
Sygnia says Velvet Ant modified Linux PAM and OpenSSH components to steal credentials and maintain stealthy access since 2016 ...