“Once contribution and reputation building can be automated, the attack surface moves from the code to the governance process around it. Projects that rely on informal trust and maintainer intuition ...
Threat actors are now abusing DNS queries as part of ClickFix social engineering attacks to deliver malware, making this the first known use of DNS as a channel in these campaigns.
IT researchers have traced numerous Chrome extensions back to a campaign that jeopardizes the information of 260.000 users.
US cyber security firm Proofpoint acquires AI security specialist Acuvity, expanding its platform to help organisations govern and protect AI agents, copilots and generative AI workflows.