phylum Archives - Developer Tech News https://www.developer-tech.com/news/tag/phylum/ Gaming, Apps, HTML5, Java, PHP, C#, .net, IOT Thu, 29 Aug 2024 12:16:22 +0000 en-GB hourly 1 https://www.developer-tech.com/wp-content/uploads/2020/09/dev-icon-60x60.png phylum Archives - Developer Tech News https://www.developer-tech.com/news/tag/phylum/ 32 32 North Korean hackers target developers in latest npm attack wave https://www.developer-tech.com/news/north-korean-hackers-target-developers-npm-attack-wave/ https://www.developer-tech.com/news/north-korean-hackers-target-developers-npm-attack-wave/#respond Thu, 29 Aug 2024 12:16:20 +0000 https://www.developer-tech.com/?p=46462 A fresh offensive by suspected North Korean hacking groups has targeted the open-source software community with a series of malicious packages uploaded to the npm repository. Identified by cybersecurity firm Phylum, the attacks leverage multiple techniques and appear designed to steal cryptocurrency and sensitive data from unsuspecting developers. The campaign began on 12th August and... Read more »

The post North Korean hackers target developers in latest npm attack wave appeared first on Developer Tech News.

]]>
https://www.developer-tech.com/news/north-korean-hackers-target-developers-npm-attack-wave/feed/ 0
Images weaponised in latest supply chain attack https://www.developer-tech.com/news/images-weaponised-latest-supply-chain-attack/ https://www.developer-tech.com/news/images-weaponised-latest-supply-chain-attack/#respond Tue, 16 Jul 2024 15:23:38 +0000 https://www.developer-tech.com/?p=46262 A series of malicious packages disguised as legitimate software have been discovered in the npm registry by cybersecurity firm Phylum. The packages – identified on 13 July 2024 – contained hidden command and control functionality embedded within image files, executed during the installation process. Phylum researchers uncovered two packages in this campaign, with one named... Read more »

The post Images weaponised in latest supply chain attack appeared first on Developer Tech News.

]]>
https://www.developer-tech.com/news/images-weaponised-latest-supply-chain-attack/feed/ 0
Phylum uncovers targeted malware disguised in Python package https://www.developer-tech.com/news/phylum-uncovers-targeted-malware-disguised-python-package/ https://www.developer-tech.com/news/phylum-uncovers-targeted-malware-disguised-python-package/#respond Mon, 13 May 2024 12:11:15 +0000 http://www.developer-tech.com//?p=45989 Phylum’s cybersecurity experts have detected a malicious payload embedded within a popular Python package on the PyPI repository. The package, named requests-darwin-lite, is an unauthorised variant of the widely-used requests library. The requests-darwin-lite package was cleverly designed to emulate its legitimate counterpart but included a Go binary concealed within an oversized image file pretending to... Read more »

The post Phylum uncovers targeted malware disguised in Python package appeared first on Developer Tech News.

]]>
https://www.developer-tech.com/news/phylum-uncovers-targeted-malware-disguised-python-package/feed/ 0