Malicious Packages on npm and PyPI
A wave of malicious npm and PyPI packages has emerged, posing a serious threat to software developers. This campaign, which commenced on September 12
A wave of malicious npm and PyPI packages has emerged, posing a serious threat to software developers. This campaign, which commenced on September 12
Security researchers have uncovered critical vulnerabilities in Microsoft SharePoint Server and have released details of an exploit chain.
Progress Software has issued a critical security advisory urging its customers to patch a high-severity vulnerability in its WS_FTP Server software.
Google has promptly addressed a critical zero-day vulnerability, in its Chrome browser that was actively exploited by a commercial spyware vendor
Misconfigured instances of TeslaMate, a third-party data logging application for Tesla cars, have raised significant security concerns.
The U.S. NSA, FBI, and Cybersecurity and Infrastructure Security Agency (CISA) have collaboratively released a CSA alongside Japanese partners
Researchers from four American universities have identified a new GPU side-channel attack named 'GPU.zip,' which exploits data compression
A critical security flaw, CVE-2023-5129, in the libwebp image library has been identified by Google, receiving the maximum CVSS score of 10.0.
A new cybersecurity threat has emerged with the discovery of Python malware specifically targeting users who speak the Tatar language.
A menacing new threat has surfaced in the dark corners of the web, known as the Gotham Stealer, previously recognized as the Pirate Stealer.
© 2025 | CyberMaterial | All rights reserved