DevSecOpsThousands Impacted By Data Exfiltrating PyPI PackagesMore than 14,100 users compromised by malicious PyPI packages.
DevSecOpsMore than 23.7 Million Hardcoded Secrets Publicly Exposed In GitHub Last YearThe 23.7 million number was 25% more than the year before, despite attempts to crack down on exposures.
DevSecOpsAttacks With Newly Addressed Win32 Bug Ongoing For Two YearsWin32 bug patched as part of this month's Patch Tuesday.
DevOpsBuffer Overflow Vulnerability Elimination in Software Sought by FedsOrganizations developing software have been urged by the FBI and Cybersecurity and Infrastructure Security Agency to eradicate buffer overflow vulnerabilities by implementing secure-by-design principles, The Register reports.
Container securityNVIDIA Container Vuln Could Put AI Systems at RiskAn NVIDIA Container vulnerability could put AI systems at risk.
DevSecOpsNew PyPI Archiving System Aims to Curb Open-Source Security RisksNew PyPI archiving system aims to curb open-source security risks.
MalwareBogus LDAPNightmare POC Deploys Infostealer Via Malicious GitHub RepoFake LDAPNightmare PoC deploys infostealing malware via malicious GitHub repo.
Data SecurityStrava Fitness App Exposes Global Leaders’ LocationsBodyguards for some global leaders had their location exposed via their Strava fitness app.