Tag: supply chain attack

Here you will find all the articles with the tag: supply chain attack.

Critical supply chain attack possible via PyTorch

Critical supply chain attack possible via PyTorch

Using self-hosted runners in PyTorch for GitHub operations leads to several vulnerabilities, security engineer John Stawinski IV discovered. This can lead to many malicious actions. According to security engineer John Stawinski IV, Meta's popular open-source framework PyTorch uses so-called self... Read more

date3 months ago
Check Point finds ten malicious Python packages in PyPi

Check Point finds ten malicious Python packages in PyPi

Hackers increasingly target Python repositories. Security experts from Check Point recently discovered ten malware packages in PyPi, a popular Python repository. Malware in Python repositories is typically distributed in familiar-looking packages and highly dangerous. Developers that fall victim... Read more

date2 years ago
SentinelOne detects Rust-based supply chain attack

SentinelOne detects Rust-based supply chain attack

SentinelOne recently discovered a supply chain attack that uses components of the Rust programming language. The attack involves a malicious 'crate' in the Rust dependency community repository. According to SentinelOne, hackers used a so-called CrateDepression attack to introduce a malicious cra... Read more

date2 years ago