Application security company Checkmarx has confirmed that the LAPSUS$ threat group leaked data stolen from its private GitHub ...
CheckMarx confirms March 2026 attack did result in data theft.
It has been a bad six weeks for security firm Checkmarx. Over the past 40 days, it has been the victim of at least one supply ...
Cybersecurity firm Trellix disclosed a data breach after attackers gained access to "a portion" of its source code repository ...
Checkmarx has confirmed that hackers stole data from its GitHub environment one week after hacking it to publish malicious ...
The company, formed from the merger of McAfee Enterprise and FireEye, stated that upon identifying the breach, it immediately ...
Trellix disclosed over the weekend that hackers found their way to its source code repository. The company said that ...
Bitwarden reported a brief npm supply chain compromise of its CLI tool on April 22, 2026, with no impact on user vaults. The ...
Malicious Lightning 2.6.2/2.6.3 released April 30 enable credential theft via hidden payload, leading to PyPI quarantine and ...
SAP npm packages poisoned on April 29, 2026 + AES-256-GCM encrypted credential theft + AI coding tools abused for spread.
The emerging ransomware has been deployed in the TeamPCP supply chain attacks, but victims should think twice before paying ...
Several npm packages for SAP's cloud application development ecosystem have been compromised as TeamPCP's supply chain ...