CISA Directs Agencies to Address iPhone Vulnerabilities Exploited in Spyware Attacks

The Cybersecurity and Infrastructure Security Agency (CISA) has taken action today, ordering federal agencies to promptly address recently discovered security vulnerabilities. These vulnerabilities were exploited as zero-day vulnerabilities to deploy Triangulation spyware on iPhones through iMessage zero-click exploits. This warning follows a report by Kaspersky, which unveiled a Triangulation malware component used in a campaign […]

Researchers Warn of Potential RepoJacking Vulnerability in Millions of GitHub Repositories

Security researchers from AquaSec’s Nautilus team have issued a warning stating that millions of GitHub repositories could be susceptible to a type of attack known as dependency repository hijacking, or “RepoJacking.” This vulnerability could enable attackers to carry out supply chain attacks that impact a significant number of users. The researchers analyzed a sample of […]