developer-security
26 articles with this tag
CRITICAL
MEDIUM
INFO
INFO
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
CRITICAL
Miasma Malware Targets npm Packages and GitHub Actions in Supply Chain Attack
'Cordyceps': Mushrooming Malicious Pull Requests Threaten Developer Workflows
What nearly 10,000 developer environments reveal about agentic development risk
Aikido and OWASP bring agentic Code Audit to the global AppSec community
How security teams are getting credential visibility into developer endpoints
Malicious JetBrains Marketplace plugins steal AI API keys from developers
Rust-Written IronWorm Hits NPM Supply Chain
These convincing copyright notices are designed to steal Google logins
Miasma Supply Chain Attack Compromises Red Hat npm Packages with Credential-Stealing Worm
Disrupting Glassworm: Inside CrowdStrike’s Takedown of a Developer-Targeting Botnet
Disrupting Glassworm: Inside CrowdStrike’s Takedown of a Developer-Targeting Botnet
Disrupting Glassworm: Inside CrowdStrike’s Takedown of a Developer-Targeting Botnet
Disrupting Glassworm: Inside CrowdStrike’s Takedown of a Developer-Targeting Botnet
Disrupting Glassworm: Inside CrowdStrike’s Takedown of a Developer-Targeting Botnet
Disrupting Glassworm: Inside CrowdStrike’s Takedown of a Developer-Targeting Botnet
Disrupting Glassworm: Inside CrowdStrike’s Takedown of a Developer-Targeting Botnet
Disrupting Glassworm: Inside CrowdStrike’s Takedown of a Developer-Targeting Botnet
Disrupting Glassworm: Inside CrowdStrike’s Takedown of a Developer-Targeting Botnet
Disrupting Glassworm: Inside CrowdStrike’s Takedown of a Developer-Targeting Botnet
TrapDoor malware campaign puts developer workstations in CISO spotlight
Developer workstations are the new beachhead
Bitwarden CLI npm package compromised to steal developer credentials
Void Dokkaebi Uses Fake Job Interview Lure to Spread Malware via Code Repositories
How LiteLLM Turned Developer Machines Into Credential Vaults for Attackers
GitHub phishers use fake OpenClaw tokens to drain crypto wallets
Five Malicious Rust Crates and AI Bot Exploit CI/CD Pipelines to Steal Developer Secrets