Malicious npm Package Modifies Local ‘ethers’ Library to Launch Reverse Shell Attacks

Cybersecurity researchers have discovered two malicious packages on the npm registry that are designed to infect another locally installed package, underscoring the continued evolution of software supply chain attacks targeting the open-source ecosystem. The packages in question are ethers-provider2 and ethers-providerz, with the former downloaded 73 times to date since it was published on

Sparring in the Cyber Ring: Using Automated Pentesting to Build Resilience

“A boxer derives the greatest advantage from his sparring partner…” — Epictetus, 50–135 AD Hands up. Chin tucked. Knees bent. The bell rings, and both boxers meet in the center and circle. Red throws out three jabs, feints a fourth, and—BANG—lands a right hand on Blue down the center. This wasn’t Blue’s first day and […]

How PAM Mitigates Insider Threats: Preventing Data Breaches, Privilege Misuse, and More

When people think of cybersecurity threats, they often picture external hackers breaking into networks. However, some of the most damaging breaches stem from within organizations. Whether through negligence or malicious intent, insiders can expose your organization to significant cybersecurity risks. According to Verizon’s 2024 Data Breach Investigations Report, 57% of companies experience over

Hackers Using E-Crime Tool Atlantis AIO for Credential Stuffing on 140+ Platforms

Threat actors are leveraging an e-crime tool called Atlantis AIO Multi-Checker to automate credential stuffing attacks, according to findings from Abnormal Security. Atlantis AIO “has emerged as a powerful weapon in the cybercriminal arsenal, enabling attackers to test millions of stolen credentials in rapid succession,” the cybersecurity company said in an analysis. Credential stuffing is […]

PlayStation Store pre-orders are dominated right now by Xbox exclusives

Microsoft’s recent efforts to get its gaming roster on multiple platforms are rewarding the company in a huge manner, as evidenced by the pre-order numbers of former Xbox exclusives on the PlayStation Store. Titles such as Forza Horizon 5 and Indiana Jones and the Great Circle have shot up the pre-order list on the PS5 […]

ChatGPT’s new image generator might actually be good. It’s definitely easier to use

OpenAI has significantly improved ChatGPT by adding advanced image-generation capabilities utilizing its new GPT-4o model. The new release allows users to create and edit images directly within the ChatGPT platform, a radical enhancement of the website’s functionality. The GPT-4o model now integrates the ability to generate and edit images and text. This enables ChatGPT to […]

Google patches a Chrome zero-day vulnerability used in espionage

Google has released an out-of-band security patch for its Chrome browser to fix a high-severity zero-day vulnerability, CVE-2025-2783, which has been actively exploited in targeted espionage campaigns. The security firm Kaspersky unearthed this weakness in mid-March 2025 while investigating a series of sophisticated attacks. The flaw resides in Chrome’s Mojo component within Windows platforms, where […]

This site uses cookies to offer you a better browsing experience. By browsing this website, you agree to our use of cookies. Click More Info to view Privacy Policy.