home.social

#credentialstealer — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #credentialstealer, aggregated by home.social.

fetched live
  1. Malicious MemTensor Packages Spread sckit Credential Stealer via npm and PyPI

    Beware: compromised MemTensor packages on npm and PyPI are spreading a sneaky credential stealer called sckit, which can steal your sensitive info. Malicious actors have hijacked these packages to secretly install the sckit malware, putting your credentials at risk.

    osintsights.com/malicious-memt

    #MalwareOperations #CredentialStealer #Sckit #Memtensor #Npm

  2. Arch Linux AUR Packages Targeted in Credential Stealer Campaign

    Malicious actors have hijacked over 400 Arch Linux AUR packages, quietly altering their build scripts to deploy a sneaky Rust credential stealer in a campaign dubbed Atomic Arch. By targeting abandoned packages and preserving their original names and histories, the attackers cleverly evaded detection.

    osintsights.com/arch-linux-aur

    #ArchLinux #Aur #CredentialStealer #Rust #SupplyChain

  3. Arch Linux AUR Packages Targeted in Credential Stealer Campaign

    Malicious actors have hijacked over 400 Arch Linux AUR packages, quietly altering their build scripts to deploy a sneaky Rust credential stealer in a campaign dubbed Atomic Arch. By targeting abandoned packages and preserving their original names and histories, the attackers cleverly evaded detection.

    osintsights.com/arch-linux-aur

    #ArchLinux #Aur #CredentialStealer #Rust #SupplyChain

  4. Arch Linux AUR Packages Targeted in Credential Stealer Campaign

    Malicious actors have hijacked over 400 Arch Linux AUR packages, quietly altering their build scripts to deploy a sneaky Rust credential stealer in a campaign dubbed Atomic Arch. By targeting abandoned packages and preserving their original names and histories, the attackers cleverly evaded detection.

    osintsights.com/arch-linux-aur

    #ArchLinux #Aur #CredentialStealer #Rust #SupplyChain

  5. Arch Linux AUR Packages Targeted in Credential Stealer Campaign

    Malicious actors have hijacked over 400 Arch Linux AUR packages, quietly altering their build scripts to deploy a sneaky Rust credential stealer in a campaign dubbed Atomic Arch. By targeting abandoned packages and preserving their original names and histories, the attackers cleverly evaded detection.

    osintsights.com/arch-linux-aur

    #ArchLinux #Aur #CredentialStealer #Rust #SupplyChain

  6. Malicious Laravel-Lang Packages Deliver Cross-Platform Credential Stealer

    A massive wave of malicious Laravel-Lang packages, with over 700 versions released in just two days, has been used to spread a sneaky cross-platform credential stealer. Security researchers warn that multiple PHP packages from the Laravel-Lang organization were compromised, hinting at a large-scale breach of the organization's…

    osintsights.com/malicious-lara

    #MalwareOperations #Laravel #CredentialStealer #Php #SupplyChain

  7. Mini Shai-Hulud Worm Targets Multiple AI, Dev Packages

    Meet the Mini Shai-Hulud worm, a sneaky new malware that's infiltrating AI and development packages through a clever supply-chain attack. This malicious code can steal sensitive data from cloud providers, cryptocurrency wallets, and even popular dev tools like GitHub Actions.

    osintsights.com/mini-shai-hulu

    #SupplyChain #MalwareOperations #CredentialStealer #AiSecurity #Devsecops

  8. PCPJack Credential Stealer Exploits CVEs to Spread Across Cloud Systems

    Meet PCPJack, a sneaky credential stealer that's exploiting vulnerabilities to spread rapidly across cloud systems, swiping sensitive info from services like cloud, finance, and productivity tools. Its operators are after one thing: illicit financial gain.

    osintsights.com/pcpjack-creden

    #CredentialStealer #CloudSecurity #EmergingThreats #MalwareOperations #CredentialTheft

  9. Malware Worm Exploits npm Packages to Hijack Developer Tokens

    Meet CanisterSprawl, a sneaky self-propagating worm that's compromising npm packages and using stolen developer tokens to spread its reach. This malware goes beyond just stealing credentials, turning one infected environment into a web of additional package compromises.

    osintsights.com/malware-worm-e

    #NpmMalware #SupplyChain #MalwareWorm #CredentialStealer #Canistersprawl

  10. Oh no. Here we go again! Another wave of compromised #npm packages. Check your dependencies! This time it even deletes your home directory, if it does not find any secrets 😱

    aikido.dev/blog/shai-hulud-str

    And it appears that the worm is quite successful again: github.com/search?q=sha1-hulud

    #ShaiHulud #Malware #CredentialStealer #SupplyChain #SupplyChainAttack #InfoSec

  11. Oh no. Here we go again! Another wave of compromised #npm packages. Check your dependencies! This time it even deletes your home directory, if it does not find any secrets 😱

    aikido.dev/blog/shai-hulud-str

    And it appears that the worm is quite successful again: github.com/search?q=sha1-hulud

    #ShaiHulud #Malware #CredentialStealer #SupplyChain #SupplyChainAttack #InfoSec

  12. Oh no. Here we go again! Another wave of compromised #npm packages. Check your dependencies! This time it even deletes your home directory, if it does not find any secrets 😱

    aikido.dev/blog/shai-hulud-str

    And it appears that the worm is quite successful again: github.com/search?q=sha1-hulud

    #ShaiHulud #Malware #CredentialStealer #SupplyChain #SupplyChainAttack #InfoSec

  13. Oh no. Here we go again! Another wave of compromised #npm packages. Check your dependencies! This time it even deletes your home directory, if it does not find any secrets 😱

    aikido.dev/blog/shai-hulud-str

    And it appears that the worm is quite successful again: github.com/search?q=sha1-hulud

    #ShaiHulud #Malware #CredentialStealer #SupplyChain #SupplyChainAttack #InfoSec

  14. Rhadamanthys Stealer has it's own web, I had missed that completely.

    Yet another sign that the Stealer market is growing, maturing and getting increasingly professional and an important part of the ecosystem.

    #ThreatIntelligence #Stealer #CredentialStealer #Malware

  15. Rhadamanthys Stealer has it's own web, I had missed that completely.

    Yet another sign that the Stealer market is growing, maturing and getting increasingly professional and an important part of the ecosystem.

    #ThreatIntelligence #Stealer #CredentialStealer #Malware

  16. Rhadamanthys Stealer has it's own web, I had missed that completely.

    Yet another sign that the Stealer market is growing, maturing and getting increasingly professional and an important part of the ecosystem.

    #ThreatIntelligence #Stealer #CredentialStealer #Malware

  17. Rhadamanthys Stealer has it's own web, I had missed that completely.

    Yet another sign that the Stealer market is growing, maturing and getting increasingly professional and an important part of the ecosystem.

    #ThreatIntelligence #Stealer #CredentialStealer #Malware

  18. Any thoughts on how many Credential Stealer families rely on using the Telegram API Bot endpoint for exfiltrating / copying information from infected devices?

    Trying to assess the potential for leveraging that observation for some simple detection rules of potential stealer infections.

    Any hot takes?

    [ #ThreatIntel #DetectionEngineering #CredentialStealer ]

  19. Any thoughts on how many Credential Stealer families rely on using the Telegram API Bot endpoint for exfiltrating / copying information from infected devices?

    Trying to assess the potential for leveraging that observation for some simple detection rules of potential stealer infections.

    Any hot takes?

    [ #ThreatIntel #DetectionEngineering #CredentialStealer ]

  20. Any thoughts on how many Credential Stealer families rely on using the Telegram API Bot endpoint for exfiltrating / copying information from infected devices?

    Trying to assess the potential for leveraging that observation for some simple detection rules of potential stealer infections.

    Any hot takes?

    [ #ThreatIntel #DetectionEngineering #CredentialStealer ]

  21. Any thoughts on how many Credential Stealer families rely on using the Telegram API Bot endpoint for exfiltrating / copying information from infected devices?

    Trying to assess the potential for leveraging that observation for some simple detection rules of potential stealer infections.

    Any hot takes?

    [ #ThreatIntel #DetectionEngineering #CredentialStealer ]