News

Latest news about B2B cyber security >>> PR agencies: add us to your mailing list - see contact! >>> Book an exclusive PartnerChannel for your news!

Docker Hub: 3 million infected repositories discovered
B2B Cyber ​​Security ShortNews

Docker Hub has a huge library for developers with millions of container images and repositories. The experts at JFrog found almost 3 million public archives or repositories that are malicious or contaminated. A large-scale malware campaign. JFrog's security research uncovered coordinated attacks on Docker Hub that planted millions of malicious repositories. As JFrog and Docker's security research teams work together, they also continually monitor open source software registries to proactively identify and remediate potential malware and vulnerability threats. Almost 3 million infected Docker archives or repositories The team…

Read more

LofyLife: Campaign distributes infected open source code packages
Kaspersky_news

Two days ago, on July 26, Kaspersky experts discovered a new malicious campaign called 'LofyLife' using the internal automated system monitoring open source repositories. The public collection of open source code packages is thus compromised. The campaign uses four malicious packages that proliferate 'Volt Stealer' and 'Lofy Stealer' malware in the open-source npm repository. They collect various information from their victims, including Discord tokens and credit card information, and spy on them over time. Infected Open Source Code Packages The npm repository is a public collection of open source code packages widely used in front-end web apps, mobile apps, robots and routers and…

Read more