Tags

Browse research by ecosystem, incident class, and response context.

#ai (1) #ai-assistants (2) #ai-ml (1) #ai-tools (2) #anti-analysis (1) #arch (1) #aur (1) #azure (1) #backdoor (2) #backstage (1) #bitwarden (1) #brandjacking (1) #browser (1) #bun (1) #cascading-trust (1) #cdxgen (1) #certificate-theft (1) #chromium (1) #ci-cd (14) #cisa-kev (3) #clickfix (1) #composer (1) #compromise (3) #content-supply-chain (1) #crates.io (1) #credential-theft (33) #credentials-theft (1) #cross-site-scripting (1) #crypto (1) #crypto-stealer (1) #cryptocurrency (1) #cyclonedx (1) #daemon-tools (1) #dependency-confusion (1) #developer-endpoints (1) #developer-profiling (1) #developer-tooling (1) #developer-workstations (1) #dns (1) #dns-exfiltration (1) #domain-takeover (1) #dotnet (1) #ebpf (2) #exfiltration (1) #exploit-delivery (1) #extension (1) #financial-services (1) #ghcr (1) #ghost-cms (1) #github (4) #github-actions (9) #go (1) #google-chrome (1) #hades (1) #hades-cluster (1) #ide-plugins (1) #infostealer (1) #javascript (1) #jetbrains-marketplace (1) #kernel (1) #kernel-exploit (1) #laravel (1) #lazarus-group (1) #leo-platform (1) #linux (1) #lockfile-integrity (1) #maintainer-hijacking (1) #malicious-package (2) #malware (2) #mastra (1) #maven (1) #miasma (2) #microsoft (3) #mini-shai-hulud (2) #monkey-patching (1) #node (1) #node-gyp (2) #npm (23) #nuget (1) #oauth (1) #oidc (2) #open-vsx (2) #package-compromise (5) #package-impersonation (1) #package-manager (1) #packagist (2) #phantom-gyp (1) #pnpm (1) #postinstall (2) #privilege-escalation (1) #public-sector (1) #pypi (11) #python (1) #rat (2) #redhat (1) #repository-compromise (1) #rootkit (1) #ruby (1) #rubygems (1) #rust (1) #sbom (1) #security-bypass (1) #shai-hulud (3) #signed-malware (1) #slsa (1) #solana (2) #sql-injection (1) #startup-hook (1) #supply-chain (43) #tag-hijack (3) #tag-poisoning (1) #teampcp (6) #typosquatting (5) #unc1069 (1) #vscode (2) #vscode-extensions (1) #wasm (1) #waveshaper (1) #windows (2) #wordpress (1) #workflow-injection (1) #workflow-secrets (1) #worm (1) #xinference (1) #zero-day (3)