2025

GitHub supply chain attack spills secrets from 23,000 projects

GitHub supply chain attack spills secrets from 23,000 projects 2025-03-17 at 14:47 By Connor Jones Large organizations among those cleaning up the mess It’s not such a happy Monday for defenders wiping the sleep from their eyes only to deal with the latest supply chain attack.… This article is an excerpt from The Register View

React to this headline:

Loading spinner

GitHub supply chain attack spills secrets from 23,000 projects Read More »

Chinese threat actor resided in US electric grid for almost one year

Chinese threat actor resided in US electric grid for almost one year 2025-03-17 at 14:17 By A case study discusses an intrusion into the United States electric grid associated with Volt Typhoon, a Chinese threat actor. This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source React to this headline:

React to this headline:

Loading spinner

Chinese threat actor resided in US electric grid for almost one year Read More »

100 Car Dealerships Hit by Supply Chain Attack

100 Car Dealerships Hit by Supply Chain Attack 2025-03-17 at 14:17 By Ionut Arghire The websites of over 100 auto dealerships were found serving malicious ClickFix code in a supply chain compromise. The post 100 Car Dealerships Hit by Supply Chain Attack appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

React to this headline:

Loading spinner

100 Car Dealerships Hit by Supply Chain Attack Read More »

Pavel Durov in Dubai: Telegram ‘exceeded’ its legal obligations

Pavel Durov in Dubai: Telegram ‘exceeded’ its legal obligations 2025-03-17 at 14:02 By Cointelegraph by Ezra Reguerra Telegram founder Pavel Durov said the company had always met and “exceeded” its legal obligations in moderation, cooperation and fighting crime.  On March 17, the Telegram founder posted an update on the messaging application, saying he was already

React to this headline:

Loading spinner

Pavel Durov in Dubai: Telegram ‘exceeded’ its legal obligations Read More »

Flang-tastic! LLVM’s Fortran compiler finally drops the training wheels

Flang-tastic! LLVM’s Fortran compiler finally drops the training wheels 2025-03-17 at 13:58 By Liam Proven Another all-FOSS option – just don’t confuse it with all the other Flangs The latest version of the LLVM compiler suite has promoted its Fortran front end. “Flang” is now official.… This article is an excerpt from The Register View

React to this headline:

Loading spinner

Flang-tastic! LLVM’s Fortran compiler finally drops the training wheels Read More »

⚡ THN Weekly Recap: Router Hacks, PyPI Attacks, New Ransomware Decryptor, and More

⚡ THN Weekly Recap: Router Hacks, PyPI Attacks, New Ransomware Decryptor, and More 2025-03-17 at 13:57 By From sophisticated nation-state campaigns to stealthy malware lurking in unexpected places, this week’s cybersecurity landscape is a reminder that attackers are always evolving. Advanced threat groups are exploiting outdated hardware, abusing legitimate tools for financial fraud, and finding

React to this headline:

Loading spinner

⚡ THN Weekly Recap: Router Hacks, PyPI Attacks, New Ransomware Decryptor, and More Read More »

SANS Institute Warns of Novel Cloud-Native Ransomware Attacks

SANS Institute Warns of Novel Cloud-Native Ransomware Attacks 2025-03-17 at 13:57 By The latest Palo Alto Networks Unit 42 Cloud Threat Report found that sensitive data is found in 66% of cloud storage buckets. This data is vulnerable to ransomware attacks. The SANS Institute recently reported that these attacks can be performed by abusing the

React to this headline:

Loading spinner

SANS Institute Warns of Novel Cloud-Native Ransomware Attacks Read More »

Nvidia Riva Vulnerabilities Allow Unauthorized Use of AI Services

Nvidia Riva Vulnerabilities Allow Unauthorized Use of AI Services 2025-03-17 at 13:16 By Eduard Kovacs Vulnerabilities in Nvidia Riva could allow hackers to abuse speech and translation AI services that are typically expensive.  The post Nvidia Riva Vulnerabilities Allow Unauthorized Use of AI Services appeared first on SecurityWeek. This article is an excerpt from SecurityWeek

React to this headline:

Loading spinner

Nvidia Riva Vulnerabilities Allow Unauthorized Use of AI Services Read More »

Crypto ETPs see $1.7B in outflows, longest streak since 2015

Crypto ETPs see $1.7B in outflows, longest streak since 2015 2025-03-17 at 13:07 By Cointelegraph by Helen Partz Cryptocurrency exchange-traded products (ETPs) continued seeing massive selling last week, recording the fifth week of outflows in a row, with $1.7 billion leaving the market.  After seeing slightly softened outflows of $876 million in the previous week,

React to this headline:

Loading spinner

Crypto ETPs see $1.7B in outflows, longest streak since 2015 Read More »

Brazilian lawmaker introduces bill to regulate Bitcoin salaries

Brazilian lawmaker introduces bill to regulate Bitcoin salaries 2025-03-17 at 13:07 By Cointelegraph by Helen Partz Brazilian lawmakers are considering new legislation that would officially authorize employers to pay salaries to employees using cryptocurrencies like Bitcoin. Federal deputy Luiz Philippe de Orleans e Bragança has introduced a bill proposing regulation of crypto payments for wages,

React to this headline:

Loading spinner

Brazilian lawmaker introduces bill to regulate Bitcoin salaries Read More »

GitHub Action Compromise Puts CI/CD Secrets at Risk in Over 23,000 Repositories

GitHub Action Compromise Puts CI/CD Secrets at Risk in Over 23,000 Repositories 2025-03-17 at 12:21 By Cybersecurity researchers are calling attention to an incident in which the popular GitHub Action tj-actions/changed-files was compromised to leak secrets from repositories using the continuous integration and continuous delivery (CI/CD) workflow. The incident involved the tj-actions/changed-files GitHub Action, which

React to this headline:

Loading spinner

GitHub Action Compromise Puts CI/CD Secrets at Risk in Over 23,000 Repositories Read More »

Congress should ‘drop the hammer’ on Meta over whistleblower claims about China: tech watchdogs

Congress should ‘drop the hammer’ on Meta over whistleblower claims about China: tech watchdogs 2025-03-17 at 12:04 By Thomas Barrabi Congress should “drop the hammer” on Meta after a whistleblower detailed the major lengths that Mark Zuckerberg allegedly took to get his apps unbanned in China – including clamping down on a prominent Beijing dissident,

React to this headline:

Loading spinner

Congress should ‘drop the hammer’ on Meta over whistleblower claims about China: tech watchdogs Read More »

Not every AI agent needs its own cryptocurrency: CZ

Not every AI agent needs its own cryptocurrency: CZ 2025-03-17 at 12:04 By Cointelegraph by Zoltan Vardai Artificial intelligence agents need to prioritize their intrinsic utility, not the launch of their in-house native tokens to raise funds. AI agent-related tokens have significantly declined over the past month, as their cumulative market capitalization decreased by over

React to this headline:

Loading spinner

Not every AI agent needs its own cryptocurrency: CZ Read More »

Wemix denies cover-up amid delayed $6.2M bridge hack announcement

Wemix denies cover-up amid delayed $6.2M bridge hack announcement 2025-03-17 at 12:04 By Cointelegraph by Ezra Reguerra Wemix Foundation CEO Kim Seok-hwan said they had no intention of concealing a hack on its bridge, which led to over $6 million in losses. In a press conference, Kim reportedly said there was no attempt to cover

React to this headline:

Loading spinner

Wemix denies cover-up amid delayed $6.2M bridge hack announcement Read More »

Popular GitHub Action Targeted in Supply Chain Attack

Popular GitHub Action Targeted in Supply Chain Attack 2025-03-17 at 12:04 By Eduard Kovacs The tj-actions/changed-files GitHub Action, which is used in 23,000 repositories, has been targeted in a supply chain attack. The post Popular GitHub Action Targeted in Supply Chain Attack appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

React to this headline:

Loading spinner

Popular GitHub Action Targeted in Supply Chain Attack Read More »

Microsoft wouldn’t look at a bug report without a video. Researcher maliciously complied

Microsoft wouldn’t look at a bug report without a video. Researcher maliciously complied 2025-03-17 at 11:32 By Connor Jones Maddening techno loop, Zoolander reference, and 14 minutes of time wasted A vulnerability analyst and prominent member of the infosec industry has blasted Microsoft for refusing to look at a bug report unless he submitted a

React to this headline:

Loading spinner

Microsoft wouldn’t look at a bug report without a video. Researcher maliciously complied Read More »

Peak ‘FUD’ hints at $70K floor — 5 Things to know in Bitcoin this week

Peak ‘FUD’ hints at $70K floor — 5 Things to know in Bitcoin this week 2025-03-17 at 11:01 By Cointelegraph by William Suberg Bitcoin (BTC) heads into FOMC week in a cautious mood, with multimonth lows still uncomfortably close. BTC price action preserves $80,000 support as upside liquidity looks ripe for the taking. The Fed

React to this headline:

Loading spinner

Peak ‘FUD’ hints at $70K floor — 5 Things to know in Bitcoin this week Read More »

This one weird trick can make online publishing faster, safer, more attractive, and richer

This one weird trick can make online publishing faster, safer, more attractive, and richer 2025-03-17 at 10:47 By Rupert Goodwins Well, maybe not richer, but we’re about to find out Opinion  The universe ended unexpectedly on a March Monday in 2025. To the relief of many, it came back a few days later much as

React to this headline:

Loading spinner

This one weird trick can make online publishing faster, safer, more attractive, and richer Read More »

Scroll to Top