<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/">
  <channel>
    <title>Packages on Tenu Tech Brief</title>
    <link>https://cluster-site.onrender.com/tags/packages/</link>
    <description>Recent content in Packages on Tenu Tech Brief</description>
    <generator>Hugo -- 0.146.0</generator>
    <language>en-us</language>
    <lastBuildDate>Wed, 25 Feb 2026 14:45:24 +0000</lastBuildDate>
    <atom:link href="https://cluster-site.onrender.com/tags/packages/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Malicious NuGet Packages Stole ASP.NET Data; npm Package Dropped Malware</title>
      <link>https://cluster-site.onrender.com/posts/malicious-nuget-packages-stole-asp.net-data-npm-package-dropped-malware/</link>
      <pubDate>Wed, 25 Feb 2026 12:43:00 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/malicious-nuget-packages-stole-asp.net-data-npm-package-dropped-malware/</guid>
      <description>• Malicious NuGet Packages Stole ASP • NET Data; npm Package Dropped Malware Cybersecurity researchers have discovered four malicious NuGet packages that are designed to target ASP</description>
    </item>
    <item>
      <title>Malicious npm Packages Harvest Crypto Keys, CI Secrets, and API Tokens</title>
      <link>https://cluster-site.onrender.com/posts/malicious-npm-packages-harvest-crypto-keys-ci-secrets-and-api-tokens/</link>
      <pubDate>Mon, 23 Feb 2026 10:20:00 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/malicious-npm-packages-harvest-crypto-keys-ci-secrets-and-api-tokens/</guid>
      <description>• Cybersecurity researchers have disclosed what they say is an active &amp;lsquo;Shai-Hulud-like&amp;rsquo; supply chain worm campaign that has leveraged a cluster of at least 19 malicious npm package</description>
    </item>
    <item>
      <title>Lazarus Campaign Plants Malicious Packages in npm and PyPI Ecosystems</title>
      <link>https://cluster-site.onrender.com/posts/lazarus-campaign-plants-malicious-packages-in-npm-and-pypi-ecosystems/</link>
      <pubDate>Thu, 12 Feb 2026 16:55:00 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/lazarus-campaign-plants-malicious-packages-in-npm-and-pypi-ecosystems/</guid>
      <description>• Cybersecurity researchers have discovered a fresh set of malicious packages across npm and the Python Package Index (PyPI) repository linked to a fake recruitment-themed campaign</description>
    </item>
  </channel>
</rss>
