⤷ Title: Poisoned Code: Stealthy Malicious Go Module Backdoor Discovered in Long-Running Typosquat
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 25 May 2026 09:01:53 +0000
════════════════════════
⌗ Tags: #Malware #DNS TXT backdoor #Go module #proxy.golang.org #rce #Remote Code Execution #shopspring/decimal #shopsprint/decimal #Socket Security #supply chain attack #typosquat
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 25 May 2026 09:01:53 +0000
════════════════════════
⌗ Tags: #Malware #DNS TXT backdoor #Go module #proxy.golang.org #rce #Remote Code Execution #shopspring/decimal #shopsprint/decimal #Socket Security #supply chain attack #typosquat
Daily CyberSecurity
Poisoned Code: Stealthy Malicious Go Module Backdoor Discovered in Long-Running Typosquat
Security researchers have exposed a malicious Go module backdoor hidden inside the shopsprint/decimal package that executes code using stealthy DNS TXT records.
⤷ Title: Sicoob SDK Banking Malware Exploits NuGet Developer Channels
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 03 Jun 2026 08:12:31 +0000
════════════════════════
⌗ Tags: #Malware #Financial Cybercrime #NuGet Malware #Sicoob.Sdk #Socket Security #supply chain attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 03 Jun 2026 08:12:31 +0000
════════════════════════
⌗ Tags: #Malware #Financial Cybercrime #NuGet Malware #Sicoob.Sdk #Socket Security #supply chain attack
Daily CyberSecurity
Sicoob SDK Banking Malware Exploits NuGet Developer Channels
A dangerous Sicoob SDK banking malware campaign triggers a major NuGet supply chain attack. Learn how it exfiltrates private financial certificates.
⤷ Title: Malicious Chrome Extensions Exposed in Mass Production Traffic Fraud Scheme
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 13 Jun 2026 02:34:42 +0000
════════════════════════
⌗ Tags: #Malware #adware #browser security #Chrome extensions #Socket #traffic fraud
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 13 Jun 2026 02:34:42 +0000
════════════════════════
⌗ Tags: #Malware #adware #browser security #Chrome extensions #Socket #traffic fraud
Daily CyberSecurity
Malicious Chrome Extensions Exposed in Mass Production Traffic Fraud Scheme
Discover how malicious Chrome extensions engage in traffic laundering while lying to users about collecting data on the official store.
⤷ Title: 152 Chrome Wallpaper Extensions Hid Ad Tracking
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 16 Jun 2026 03:27:13 +0000
════════════════════════
⌗ Tags: #Malware #Ad Tracking #Browser Malware #Chrome extensions #Chrome Web Store #Live Wallpaper #Socket Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 16 Jun 2026 03:27:13 +0000
════════════════════════
⌗ Tags: #Malware #Ad Tracking #Browser Malware #Chrome extensions #Chrome Web Store #Live Wallpaper #Socket Security
Information Security News
152 Chrome Wallpaper Extensions Hid Ad Tracking
Socket found 152 Chrome live wallpaper extensions secretly faking Google search traffic and harvesting user data for ad networks.
⤷ Title: Mastra Supply Chain Attack Compromises 140+ npm Packages
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 17 Jun 2026 08:04:43 +0000
════════════════════════
⌗ Tags: #Malware #easy_day_js #Infostealer #Mastra #npm #Socket #supply chain attack #Typosquatting
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 17 Jun 2026 08:04:43 +0000
════════════════════════
⌗ Tags: #Malware #easy_day_js #Infostealer #Mastra #npm #Socket #supply chain attack #Typosquatting
Daily CyberSecurity
Mastra Supply Chain Attack Compromises 140+ npm Packages
A Mastra supply chain attack compromised 140+ npm packages, using the typosquatted easy-day-js dependency to drop a crypto-stealing infostealer.
⤷ Title: 152 Chrome Live Wallpaper Extensions Hid Ad Tracking and Fake Search Clicks
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Wed, 17 Jun 2026 12:24:28 +0000
════════════════════════
⌗ Tags: #Security #Scams and Fraud #Chrome #Cybersecurity #Fraud #Google #google search #Malware #Scam #Socket #Wallpaper
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Wed, 17 Jun 2026 12:24:28 +0000
════════════════════════
⌗ Tags: #Security #Scams and Fraud #Chrome #Cybersecurity #Fraud #Google #google search #Malware #Scam #Socket #Wallpaper
Hackread
152 Chrome Live Wallpaper Extensions Hid Ad Tracking and Fake Search Clicks
Socket says the extensions worked as wallpaper tools, but also logged user data, disguised install traffic as Google clicks, and fed ad sites.
⤷ Title: North Korea-Linked PolinRider Supply Chain Attack Expands Across Open Source
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 09 Jul 2026 07:53:40 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Contagious Interview #DEV#POPPER #Famous Chollima #North Korean hackers #npm #Packagist #PolinRider #Socket #supply chain attack
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 09 Jul 2026 07:53:40 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Contagious Interview #DEV#POPPER #Famous Chollima #North Korean hackers #npm #Packagist #PolinRider #Socket #supply chain attack
Daily CyberSecurity
North Korea-Linked PolinRider Supply Chain Attack Expands Across Open Source
At a Glance Actor / group Suspected North Korean actors in the Contagious Interview / Famous Chollima cluster (Socket assessment) Activity type Open-source supply chain campaign; hidden JavaScript…
⤷ Title: Fake Braintree NuGet Package Skims Credit Cards and Steals Merchant API Keys
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 14:00:11 +0000
════════════════════════
⌗ Tags: #Malware #.NET malware #Braintree.Net #Credit Card Skimmer #DependencyInjector.Core #NuGet #Socket #supply chain attack #typosquat
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 14:00:11 +0000
════════════════════════
⌗ Tags: #Malware #.NET malware #Braintree.Net #Credit Card Skimmer #DependencyInjector.Core #NuGet #Socket #supply chain attack #typosquat
Daily CyberSecurity
Fake Braintree NuGet Package Skims Credit Cards and Steals Merchant API Keys
At a Glance Malware family Braintree.Net typosquat, a multi-stage .NET implant with a companion harvester (DependencyInjector.Core) Threat actor Unattributed; financially motivated (suspected) Tar…
⤷ Title: Malicious Go Module Exposes a 222-Repository GitHub Lure Network
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 07:11:10 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AsyncRAT #GitHub lure network #malicious Go module #Operation Muck and Load #Socket #Software Supply Chain #Vidar Infostealer
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 07:11:10 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AsyncRAT #GitHub lure network #malicious Go module #Operation Muck and Load #Socket #Software Supply Chain #Vidar Infostealer
Daily CyberSecurity
Malicious Go Module Exposes a 222-Repository GitHub Lure Network
Actor / group Unnamed actor tracked as “Operation Muck and Load”; overlaps with the ischhfd83 cluster Activity type Software supply-chain lures and Windows malware staging Targets / vi…
⤷ Title: npm Supply Chain Attack Delivers a Cross-Platform RAT to Alibaba Developers
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 03 Aug 2026 08:03:44 +0000
════════════════════════
⌗ Tags: #Malware #Alibaba #Cross_Platform RAT #DingTalk #malicious npm packages #npm Supply Chain Attack #Socket #Supply Chain Security
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 03 Aug 2026 08:03:44 +0000
════════════════════════
⌗ Tags: #Malware #Alibaba #Cross_Platform RAT #DingTalk #malicious npm packages #npm Supply Chain Attack #Socket #Supply Chain Security
Daily CyberSecurity
npm Supply Chain Attack Delivers a Cross-Platform RAT to Alibaba Developers
At a glance Malware family Unnamed cross-platform RAT (final payload “aone-cli”) Threat actor Unattributed; suspected Chinese-speaking actor Target Developers at Alibaba Group units, i…