GlassWorm malware surfaces in development environments
GlassWorm operation compromised over 400 software components across GitHub, npm, and development marketplaces using supply-chain attacks and blockchain-based command-and-control infrastructure.
Microsoft warns of jobthemed repo lures targeting developers with multistage backdoors
Attackers used repeatable naming conventions across multiple repositories to establish infrastructure for supply chain attacks, requiring organizations to implement immediate containment and long-term developer trust boundary protections.
GlassWorm malware surfaces in development environments
GlassWorm operation compromised over 400 software components across GitHub, npm, and development marketplaces using supply-chain attacks and blockchain-based command-and-control infrastructure.
Claude Code Flaws Exposed Developer Devices to Silent Hacking
Check Point researchers discovered critical vulnerabilities in Claude Code that could enable attackers to gain unauthorized control of developer computers through malicious configuration files.