Malicious Next.js Repos Target Developers Via Fake Job Interviews

• Linked to North Korean fake job-recruitment campaigns, the poisoned repositories are aimed at establishing persistent access to infected machines

Cybersecurity · February 25, 2026 (updated February 25, 2026) · 1 min · 50 words
Malicious NuGet Packages Stole ASP.NET Data; npm Package Dropped Malware

Malicious NuGet Packages Stole ASP.NET Data; npm Package Dropped Malware

• Malicious NuGet Packages Stole ASP • NET Data; npm Package Dropped Malware Cybersecurity researchers have discovered four malicious NuGet packages that are designed to target ASP

Cybersecurity · February 25, 2026 (updated February 25, 2026) · 1 min · 178 words

Disrupting malicious uses of AI | February 2026

• Our latest threat report examines how malicious actors combine AI models with websites and social platforms-and what it means for detection and defense

1Campaign platform helps malicious Google ads evade detection

1Campaign platform helps malicious Google ads evade detection

• 1Campaign platform helps malicious Google ads evade detection February 24, 2026 04:45 PM 0 A newly identified cybercrime service known as 1Campaign is enabling threat actors to r

Cybersecurity · February 24, 2026 (updated February 25, 2026) · 2 min · 284 words
Developer-targeting campaign using malicious Next.js repositories

Developer-targeting campaign using malicious Next.js repositories

• Microsoft Defender Experts identified a coordinated developer-targeting campaign delivered through malicious repositories disguised as legitimate Next.js projects and technical a

Cybersecurity · February 24, 2026 (updated February 25, 2026) · 2 min · 251 words
Another day, another malicious JPEG, (Mon, Feb 23rd)

Another day, another malicious JPEG, (Mon, Feb 23rd)

• Another day, another malicious JPEG In his last two diaries, Xavier discussed recent malware campaigns that download JPEG files with embedded malicious payload[1,2]. • At that po

Cybersecurity · February 23, 2026 (updated February 25, 2026) · 4 min · 663 words
Malicious npm Packages Harvest Crypto Keys, CI Secrets, and API Tokens

Malicious npm Packages Harvest Crypto Keys, CI Secrets, and API Tokens

• Cybersecurity researchers have disclosed what they say is an active ‘Shai-Hulud-like’ supply chain worm campaign that has leveraged a cluster of at least 19 malicious npm package

Cybersecurity · February 23, 2026 (updated February 25, 2026) · 3 min · 510 words

Malicious AI

• Malicious AI Summary: An AI agent of unknown ownership autonomously wrote and published a personalized hit piece about me after I rejected its code, attempting to damage my reput

Cybersecurity · February 19, 2026 (updated February 25, 2026) · 2 min · 230 words

An update to the malicious crate notification policy (Rust Blog)

• ContentWeekly EditionArchivesSearchKernelSecurityEvents calendarUnread commentsLWN FAQWrite for us Weekly Edition Archives Search Kernel Security Events calendar Unread comments

Linux & Open Source · February 18, 2026 (updated February 20, 2026) · 1 min · 192 words

An update to the malicious crate notification policy (Rust Blog)

• ContentWeekly EditionArchivesSearchKernelSecurityEvents calendarUnread commentsLWN FAQWrite for us Weekly Edition Archives Search Kernel Security Events calendar Unread comments

OS & Internals · February 18, 2026 (updated February 24, 2026) · 2 min · 401 words
Update Chrome now: Zero-day bug allows code execution via malicious webpages

Update Chrome now: Zero-day bug allows code execution via malicious webpages

• Update Chrome now: Zero-day bug allows code execution via malicious webpages Google hasissueda patch for a high‑severity Chrome zero‑day, tracked asCVE‑2026‑2441, a memory bug in

Threat Intelligence · February 17, 2026 (updated February 25, 2026) · 2 min · 226 words
Over 300 Malicious Chrome Extensions Caught Leaking or Stealing User Data

Over 300 Malicious Chrome Extensions Caught Leaking or Stealing User Data

• Security researchers have discovered more than 300 Chrome extensions that leak browser data, spy on their users, or outright steal users’ data.Research focused on the analysis of

Cybersecurity · February 14, 2026 (updated February 24, 2026) · 2 min · 375 words
Malicious Chrome Extensions Caught Stealing Business Data, Emails, and Browsing History

Malicious Chrome Extensions Caught Stealing Business Data, Emails, and Browsing History

• Cybersecurity researchers have discovered a malicious Google Chrome extension that’s designed to steal data associated with Meta Business Suite and Facebook Business Manager. • T

Cybersecurity · February 13, 2026 (updated February 24, 2026) · 2 min · 229 words
crates.io: an update to the malicious crate notification policy

crates.io: an update to the malicious crate notification policy

• The crates.io team will no longer publish a blog post each time a malicious crate is detected or reported. • In the vast majority of cases to date, these notifications have invol

Language Internals · February 13, 2026 (updated February 25, 2026) · 2 min · 241 words
crates.io: an update to the malicious crate notification policy

crates.io: an update to the malicious crate notification policy

• The crates.io team will no longer publish a blog post each time a malicious crate is detected or reported. • In the vast majority of cases to date, these notifications have invol

OS & Internals · February 13, 2026 (updated February 24, 2026) · 2 min · 330 words
Lazarus Campaign Plants Malicious Packages in npm and PyPI Ecosystems

Lazarus Campaign Plants Malicious Packages in npm and PyPI Ecosystems

• Cybersecurity researchers have discovered a fresh set of malicious packages across npm and the Python Package Index (PyPI) repository linked to a fake recruitment-themed campaign

Cybersecurity · February 12, 2026 (updated February 24, 2026) · 2 min · 324 words

Most Parked Domains Now Serving Malicious Content

• Direct navigation - the act of visiting a website by manually typing a domain name in a web browser - has never been riskier: A new study finds the vast majority of ‘parked’ doma

Cybersecurity · December 16, 2025 (updated February 24, 2026) · 3 min · 543 words
Catching malicious package releases using a transparency log

Catching malicious package releases using a transparency log

• Catching malicious package releases using a transparency log We’re getting Sigstore’s rekor-monitor ready for production use, making it easier for developers to detect tampering

Threat Intelligence · December 12, 2025 (updated February 24, 2026) · 2 min · 251 words
Detecting malicious pull requests at scale with LLMs

Detecting malicious pull requests at scale with LLMs

• Callan Lamb Christoph Hamsen Julien Doutre Jason Foral Kassen Qian At Datadog, weâve embraced coding assistants because they help us ship features faster, cut down on repetitive