Tag

#supply chain

125 stories taggedsupply chain · page 3 of 9.

A warehouse or logistics facility with packages being processed on conveyor systems, security breach notification on nearby computer screen, shipping labels and
Breaches

Trezor customers exposed after shipping partner ShipMonk is hacked

Roughly 13,700 buyers of the hardware wallet had names, addresses and phone numbers stolen through a third-party logistics breach.

4 min read
A large dataset visualization showing 434,000 files being extracted from servers, PyPI package registry interface visible, stolen data flowing across network pa
Threat Intelligence

Poisoned LiteLLM Packages on PyPI May Have Leaked Secrets From 2,100 Organisations

CloudSEK says a 434,000-file dataset stolen during a 40-minute window in March traces back to two malicious releases of the popular AI gateway library.

3 min read
A developer's IDE showing AI agent integration code, with researchers examining the wrapper functions and API connections, code highlighting revealing exploitab
AI Security

The software wrapper around your AI agent is the real security risk

Researchers broke into official AI automation tools from Anthropic, Google, and OpenAI, not by tricking the AI itself, but by exploiting the ordinary code that connects it to the real world.

5 min read
A developer's desk with dual monitors displaying lines of code and git commit logs, a physical smoke detector mounted on the wall above in soft focus, morning l
Threat Intelligence

Your GitHub activity logs are a smoke detector you forgot to switch on

Two researchers showed at Black Hat USA 2026 that the evidence needed to catch software supply-chain attacks has been sitting inside GitHub all along. Their open-source tool turns that evidence into working alerts.

4 min read
A browser window with multiple tabs open, one tab showing a disguised affiliate link redirecting, subtle visual glitch or redirect animation captured mid-frame,
Threat Intelligence

Banned Chrome Extension Returns With Hidden Affiliate Scam, and Security Researchers Warn the Next Version Could Be Worse

A browser add-on pulled from the Chrome Web Store for stealing AI chat conversations is back, and it's now quietly opening affiliate links on users' computers every time it updates.

4 min read
A weekly security briefing visualization showing multiple simultaneous threats: Metabase interface with zero-day warning, plugin ecosystem with poison indicator
Threat Intelligence

Weekly Recap: A Metabase Zero-Day, Poisoned AI Plugins, and Routers Left Wide Open

Old bugs are back, supply chains are getting stranger, and the shortest exploit paths keep being the ones nobody guarded.

4 min read
A data center with servers being physically disconnected from network cables by technicians in gloves, server racks powered down in sequence, documentation and
Breaches

LexisNexis Pulls Three Services Offline After Vendor Server Break-In

The data analytics giant disconnected Nexis Diligence, Metabase API and Newsdesk after spotting suspicious activity on a third party's servers, and is rebuilding the systems from scratch.

4 min read
A shipping warehouse with rows of packages and pallets, security cameras mounted on walls, a forensic investigator in safety vest examining a compromised comput
Breaches

Valve tells European Steam customers their delivery details were stolen in CEVA Logistics hack

The gaming giant says names, addresses and phone numbers were taken after attackers spent four days inside its European shipping partner's systems.

3 min read
A developer's workstation showing VS Code with the Extensions marketplace open, two nearly identical 'Solidity Pro' extension tiles displayed side-by-side, one
Threat Intelligence

Fake 'Solidity Pro' VS Code Extensions Caught Emptying Crypto Wallets

Two look-alike extensions posed as tools for Ethereum developers, then quietly installed wallet and credential stealers on the machines that trusted them.

3 min read
A laptop screen showing a software installation dialog box with a progress bar, while code streams down in the background and a subtle warning icon glows in the
Vulnerabilities

Russian hacktivists hijack TrueConf video servers to push booby-trapped installers

Kaspersky says the Head Mare group exploited two unpatched flaws in TrueConf conferencing servers to swap the real client installer for one carrying the PhantomCore backdoor.

4 min read
A sprawling network of interconnected open-source code repositories and libraries visible in a constellation of glowing nodes, with security cracks forming betw
Opinion

Open source grew up in a hurry, and the security bill is coming due

The world runs on free code written by strangers. That model is finally hitting its limits, and everyone using cloud services is exposed.

4 min read
A laptop screen displaying a simple repository interface with a single file being downloaded, surrounded by scattered warning symbols and alert notifications di
Threat Intelligence

The Week's Attacks Were Cheap, Ordinary, and Very Effective

Opening a repo, installing a package, or previewing a PDF was enough to hand attackers a foothold this week. None of it was sophisticated. All of it worked.

4 min read
A network diagram displayed on a monitor with cloud infrastructure icons and security layers, showing a single credential point glowing red as lines of compromi
Cloud Security

One Developer Password Unlocked Everything: Inside a Healthcare Software Provider's Wake-Up Call

A company that thought its segmented cloud setup was secure ran a simulated attack and watched a single stolen developer credential unravel four years of layered defences in minutes.

4 min read
Network hardware warehouse or manufacturing facility with rows of Zbtlink routers, factory equipment and assembly lines visible, with server racks and network m
Threat Intelligence

Twenty Chinese Router Models Ship From The Factory With A Hidden Backdoor

Researchers at VulnCheck say every current Zbtlink firmware image contains an implant that phones home to Chinese servers and hands attackers root access.

4 min read
A code repository or npm package manager interface on screen showing package listings, with an Ethereum blockchain explorer window open in the background displa
Threat Intelligence

Malicious npm Packages Hide Attacker Servers Inside Empty Ethereum Transactions

Researchers found two booby-trapped code libraries pulling instructions from fake wallet addresses on the Ethereum blockchain, a twist on the EtherHiding trick now dubbed NullReceiver.

4 min read
© 2026 Threat Vectr