Security News
![How Intel is making open source accessible to all developers](/static/build/img/news/how-intel-is-making-open-source-accessible-to-all-developers-small.jpg)
In this Help Net Security interview, Arun Gupta, Vice President and General Manager for Open Ecosystem, Intel, discusses the company’s commitment to fostering an open ecosystem as a cornerstone of...
![GoIssue phishing tool targets GitHub developer credentials](/static/build/img/news/goissue-phishing-tool-targets-github-developer-credentials-small.jpg)
Researchers discovered GoIssue, a new phishing tool targeting GitHub users, designed to extract email addresses from public profiles and launch mass email attacks. Marketed on a cybercrime forum,...
![New Phishing Tool GoIssue Targets GitHub Developers in Bulk Email Campaigns](/static/build/img/news/new-phishing-tool-goissue-targets-github-developers-in-bulk-email-campaigns-small.jpg)
Cybersecurity researchers are calling attention to a new sophisticated tool called GoIssue that can be used to send phishing messages at scale targeting GitHub users. The program, first marketed...
![Malicious PyPI Package ‘Fabrice’ Found Stealing AWS Keys from Thousands of Developers](/static/build/img/news/malicious-pypi-package-fabrice-found-stealing-aws-keys-from-thousands-of-developers-small.jpg)
Cybersecurity researchers have discovered a malicious package on the Python Package Index (PyPI) that has racked up thousands of downloads for over three years while stealthily exfiltrating...
![US charges suspected Redline infostealer developer, admin](/static/build/img/news/us-charges-suspected-redline-infostealer-developer-admin-small.jpg)
The identity of a suspected developer and administrator of the Redline malware-as-a-service operation has been revealed: Russian national Maxim Rudometov. Infrastructure takedown As promised on...
![BeaverTail Malware Resurfaces in Malicious npm Packages Targeting Developers](/static/build/img/news/beavertail-malware-resurfaces-in-malicious-npm-packages-targeting-developers-small.jpg)
Three malicious packages published to the npm registry in September 2024 have been found to contain a known malware called BeaverTail, a JavaScript downloader and information stealer linked to an...
![Malicious npm Packages Target Developers' Ethereum Wallets with SSH Backdoor](/static/build/img/news/malicious-npm-packages-target-developers-ethereum-wallets-with-ssh-backdoor-small.jpg)
Cybersecurity researchers have discovered a number of suspicious packages published to the npm registry that are designed to harvest Ethereum private keys and gain remote access to the machine via...
![N. Korean Hackers Use Fake Interviews to Infect Developers with Cross-Platform Malware](/static/build/img/news/n-korean-hackers-use-fake-interviews-to-infect-developers-with-cross-platform-malware-small.jpg)
Threat actors with ties to North Korea have been observed targeting job seekers in the tech industry to deliver updated versions of known malware families tracked as BeaverTail and...
![New PondRAT Malware Hidden in Python Packages Targets Software Developers](/static/build/img/news/new-pondrat-malware-hidden-in-python-packages-targets-software-developers-small.jpg)
Threat actors with ties to North Korea have been observed using poisoned Python packages as a way to deliver a new malware called PondRAT as part of an ongoing campaign. PondRAT, according to new...
![Differential privacy in AI: A solution creating more problems for developers?](/static/build/img/news/differential-privacy-in-ai-a-solution-creating-more-problems-for-developers-small.jpg)
In the push for secure AI models, many organizations have turned to differential privacy. But is the very tool meant to protect user data holding back innovation? Developers face a tough choice:...