New Supply Chain Attack Hijacks Removed PyPI Packages
Revival Hijack – PyPI hijack technique exploited in the wild, puts 22K packages at risk A novel supply chain attack technique targeting the Python Package Index (PyPI) registry has been identified and exploited in the wild. Dubbed “Revival Hijack,”...Typosquatting Threatens Developers: Malicious Code in GitHub Actions
Watch the Typo: Our PoC Exploit for Typosquatting in GitHub Actions A new report from cloud security firm Orca warns developers about a concerning security risk – typosquatting in GitHub Actions. This technique leverages developers’ typos to trick them into...Cyberattack Disrupts Transport for London Services
https://tfl.gov.uk/campaign/cyber-security-incident Transport for London (TfL) has been impacted by a cyberattack, causing disruptions to staff systems and limited availability of services for passengers. The attack occurred on Sunday, prompting TfL to implement...