⤷ Title: World Leaks Claims Tata Electronics Breach of Apple and Tesla Files
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Wed, 24 Jun 2026 02:24:14 +0000
════════════════════════
⌗ Tags: #Data Leak #Apple #data breach #supply chain attack #Tata Electronics #Tesla #World Leaks
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Wed, 24 Jun 2026 02:24:14 +0000
════════════════════════
⌗ Tags: #Data Leak #Apple #data breach #supply chain attack #Tata Electronics #Tesla #World Leaks
Information Security News
World Leaks Claims Tata Electronics Breach of Apple and Tesla Files
The longer an electronics supply chain grows, the harder it gets to keep trade secrets inside factory walls. India’s Tata Electronics has now confirmed a recent cyber incident. The confirmat…
⤷ Title: Mastra npm Supply Chain Attack Poisons 140+ AI Packages
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 06:07:30 +0000
════════════════════════
⌗ Tags: #Malware #easy_day_js #Infostealer #Mastra #npm #Sapphire Sleet #supply chain attack
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 06:07:30 +0000
════════════════════════
⌗ Tags: #Malware #easy_day_js #Infostealer #Mastra #npm #Sapphire Sleet #supply chain attack
Information Security News
Mastra npm Supply Chain Attack Poisons 140+ AI Packages
Attackers infected more than 140 packages from the Mastra AI ecosystem through npm. The malicious code ran right after npm install or npm update. So the infection could reach developer workstation…
⤷ Title: Android Signing Key Leak Exposes 278 Apps to Fake Updates
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Fri, 03 Jul 2026 16:10:10 +0000
════════════════════════
⌗ Tags: #Data Leak #Android Signing Key #APK Re_signing #Baidu CarLife #Baidu Keyboard #GitHub Secrets Exposure #Keystore Leak #supply chain attack
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Fri, 03 Jul 2026 16:10:10 +0000
════════════════════════
⌗ Tags: #Data Leak #Android Signing Key #APK Re_signing #Baidu CarLife #Baidu Keyboard #GitHub Secrets Exposure #Keystore Leak #supply chain attack
Information Security News
Android Signing Key Leak Exposes 278 Apps to Fake Updates
A digital signature should prove that an Android app truly comes from its original developer. New research shows how a single leaked signing key can turn that trust mechanism into a supply-chain w…
⤷ Title: FBI Warns of TeamPCP Supply Chain Attack
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 04 Jul 2026 02:22:29 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cybersecurity #FBI alert #malware #supply chain attack #TeamPCP
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 04 Jul 2026 02:22:29 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cybersecurity #FBI alert #malware #supply chain attack #TeamPCP
Daily CyberSecurity
FBI Warns of TeamPCP Supply Chain Attack
At a glance Actor TeamPCP Activity type Software supply chain compromise Targets Enterprise developers, security tools Scale Large-scale access and credential theft Jurisdiction FBI investigating …
⤷ Title: Lazarus-Linked npm Malware Masquerades as Rollup Polyfills
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 03 Jul 2026 09:22:14 +0000
════════════════════════
⌗ Tags: #Cybercriminals #crypto wallet theft #JFrog #Lazarus #malicious npm packages #North Korea #npm malware #Rollup polyfill #supply chain attack
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 03 Jul 2026 09:22:14 +0000
════════════════════════
⌗ Tags: #Cybercriminals #crypto wallet theft #JFrog #Lazarus #malicious npm packages #North Korea #npm malware #Rollup polyfill #supply chain attack
Daily CyberSecurity
Lazarus-Linked npm Malware Masquerades as Rollup Polyfills
At a glance Actor Suspected North Korean Lazarus-linked group (attribution by TTP similarity) Activity npm supply chain attack using lookalike Rollup polyfill packages Targets JavaScript developer…
⤷ Title: PolinRider Supply Chain Attack Spans npm, Go, Chrome
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 08:38:34 +0000
════════════════════════
⌗ Tags: #Malware #Contagious Interview #Famous Chollima #Go Modules Security #North Korea Hackers #NPM Malware #PolinRider #supply chain attack
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 08:38:34 +0000
════════════════════════
⌗ Tags: #Malware #Contagious Interview #Famous Chollima #Go Modules Security #North Korea Hackers #NPM Malware #PolinRider #supply chain attack
Information Security News
PolinRider Supply Chain Attack Spans npm, Go, Chrome
PolinRider is no longer a story about a handful of malicious npm packages. Researchers at Socket uncovered 162 malicious release artifacts spread across 108 packages and browser extensions. The ca…
⤷ Title: North Korea-Linked PolinRider Supply Chain Attack Expands Across Open Source
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 09 Jul 2026 07:53:40 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Contagious Interview #DEV#POPPER #Famous Chollima #North Korean hackers #npm #Packagist #PolinRider #Socket #supply chain attack
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 09 Jul 2026 07:53:40 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Contagious Interview #DEV#POPPER #Famous Chollima #North Korean hackers #npm #Packagist #PolinRider #Socket #supply chain attack
Daily CyberSecurity
North Korea-Linked PolinRider Supply Chain Attack Expands Across Open Source
At a Glance Actor / group Suspected North Korean actors in the Contagious Interview / Famous Chollima cluster (Socket assessment) Activity type Open-source supply chain campaign; hidden JavaScript…
⤷ Title: Injective Labs SDK Backdoor: A 49-Minute Crypto Wallet Hack
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Mon, 13 Jul 2026 12:00:08 +0000
════════════════════════
⌗ Tags: #Malware #crypto hack #cybersecurity #Injective Labs #supply chain attack
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Mon, 13 Jul 2026 12:00:08 +0000
════════════════════════
⌗ Tags: #Malware #crypto hack #cybersecurity #Injective Labs #supply chain attack
Information Security News
Injective Labs SDK Backdoor: A 49-Minute Crypto Wallet Hack
An ordinary cryptocurrency wallet library update quickly transformed into a devastating trap. Within just 49 minutes, this trap could hand attackers complete control over user funds. Specifically,…
⤷ Title: Jscrambler Supply Chain Attack Analysis
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Tue, 14 Jul 2026 12:51:51 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #IronWorm #Jscrambler #NPM Package #supply chain attack
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Tue, 14 Jul 2026 12:51:51 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #IronWorm #Jscrambler #NPM Package #supply chain attack
Information Security News
Jscrambler Supply Chain Attack Analysis
The Initial Compromise and Detection A stolen package registry key enabled a cybercriminal to execute a severe jscrambler supply chain attack. They successfully uploaded five infected versions of …
⤷ Title: Fake Braintree NuGet Package Skims Credit Cards and Steals Merchant API Keys
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 14:00:11 +0000
════════════════════════
⌗ Tags: #Malware #.NET malware #Braintree.Net #Credit Card Skimmer #DependencyInjector.Core #NuGet #Socket #supply chain attack #typosquat
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 14:00:11 +0000
════════════════════════
⌗ Tags: #Malware #.NET malware #Braintree.Net #Credit Card Skimmer #DependencyInjector.Core #NuGet #Socket #supply chain attack #typosquat
Daily CyberSecurity
Fake Braintree NuGet Package Skims Credit Cards and Steals Merchant API Keys
At a Glance Malware family Braintree.Net typosquat, a multi-stage .NET implant with a companion harvester (DependencyInjector.Core) Threat actor Unattributed; financially motivated (suspected) Tar…