FakeGit malware campaign returns with 17,610 malicious GitHub repos
More than 17,000 fake repositories on GitHub are distributing the SmartLoader malware after the FakeGit campaign reactivated earlier this month to push the StealC infost…
More than 17,000 fake repositories on GitHub are distributing the SmartLoader malware after the FakeGit campaign reactivated earlier this month to push the StealC infost…
OAuth grants create data highways between SaaS apps, AI agents, and other tools. And, they are multiplying faster than any security team can review them. As the recent K…
Thousands of hijacked servers have been looking up their command and control (C2) server in a poem posted on GitHub, according to Black Lotus Labs. The malware reading i…
Posted by Alan Coopersmith on Oct 08 -------- Forwarded Message -------- Subject: [security] Vulnerabilities in golang.org/x/net Date: Thu, 8 Oct 2026 18:09:23 +0000 Fro…
Posted by Alan Coopersmith on Oct 08 -------- Forwarded Message -------- https://go.dev/doc/security/policy>: * net/http: HTTP/2 server...
Posted by TheSecguy on Oct 08 Hello, Short version: OpenJPEG has had a heap-buffer-overflow WRITE fixed on master since 2026-02-10 that has never appeared in a release. …
Posted by Sam James on Oct 07 """ @@ -1,3 +1,136 @@ +Changes in version 0.4.9.14 - 2026-10-07 + Another week, another security release. This again contains major bugfixe…
Posted by Goutham Pacha Ravi on Oct 07 ========================================================================== OSSN-0109: Cross-project metric association bypass in G…
View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to execute arbitrary scripts in a user's browser, consume excessive system res…