FreshRSS

πŸ”’
❌ Secure Planet Training Courses Updated For 2019 - Click Here
There are new available articles, click to refresh the page.
☐ β˜† βœ‡ /r/netsec - Information Security News & Discussion

How widespread is the impact of Critical Security Vulnerability in React Server Components(CVE-2025-55182)

By: /u/Fit_Wing3352 β€” December 11th 2025 at 02:58

Scanned 1.3M npm packages + top GitHub repos: Dify, LobeChat, Umami are affected and maybe exploited

submitted by /u/Fit_Wing3352
[link] [comments]
☐ β˜† βœ‡ /r/netsec - Information Security News & Discussion

Infostealer has entered the chat

By: /u/Fit_Wing3352 β€” December 10th 2025 at 16:50

A new wave of ClickFix attacks spreading a macOS infostealer are posting malicious user guides on the official ChatGPT website by piggybacking the chatbot’s chat-sharing feature.

submitted by /u/Fit_Wing3352
[link] [comments]
☐ β˜† βœ‡ /r/netsec - Information Security News & Discussion

Shai-Hulud Returns: Over 300 NPM Packages and 21K Github Repos infected via Fake Bun Runtime Within Hours

By: /u/Fit_Wing3352 β€” November 24th 2025 at 09:59

Shai-Hulud second attack analysis: Over 300 NPM Packages and 21K Github Repos infected via Fake Bun Runtime Within Hours

submitted by /u/Fit_Wing3352
[link] [comments]
☐ β˜† βœ‡ /r/netsec - Information Security News & Discussion

HelixGuard uncovers malicious "spellchecker" packages on PyPI using multi-layer encryption to steal crypto wallets.

By: /u/Fit_Wing3352 β€” November 20th 2025 at 03:36

HelixGuard has released analysis on a new campaign found in the Python Package Index (PyPI).

The actors published packages spellcheckers which contain a heavily obfuscated, multi-layer encrypted backdoor to steal crypto wallets.

submitted by /u/Fit_Wing3352
[link] [comments]
☐ β˜† βœ‡ /r/netsec - Information Security News & Discussion

Milvus Proxy Authentication Bypass Vulnerability(CVE-2025-64513)

By: /u/Fit_Wing3352 β€” November 14th 2025 at 04:13

Analysis of the Milvus Proxy Authentication Bypass Vulnerability(CVE-2025-64513)

submitted by /u/Fit_Wing3352
[link] [comments]
☐ β˜† βœ‡ /r/netsec - Information Security News & Discussion

Attacker Target VSCode Extension Marketplace, IDE Plugins Face Higher Supply Chain Attack Risks

By: /u/Fit_Wing3352 β€” October 29th 2025 at 05:08

HelixGuard found a dozen malicious extensions in the VSCode marketplace targeting developers.

submitted by /u/Fit_Wing3352
[link] [comments]
❌