North Korean Hackers Publish 108 Malicious Packages and Extensions in PolinRider Campaign

The North Korean threat actors linked to the Contagious Interview campaign have been observed publishing 108 unique packages and web browser extensions spanning npm, Packagist, Go, and Google Chrome as part of an ongoing activity referred to as PolinRi… Continue reading North Korean Hackers Publish 108 Malicious Packages and Extensions in PolinRider Campaign

Posted in Uncategorized

New “Bad Epoll” Linux Kernel Flaw Lets Unprivileged Users Gain Root, Hits Android

A newly disclosed Linux kernel flaw called Bad Epoll (CVE-2026-46242) lets an ordinary user with no special access take full control of a machine as root. It affects Linux desktops, servers, and Android, and a fix is out.

Bad Epoll sits in the same sm… Continue reading New “Bad Epoll” Linux Kernel Flaw Lets Unprivileged Users Gain Root, Hits Android

Posted in Uncategorized

North Korea-Linked npm Packages Mimic Rollup Polyfills to Steal Developer Secrets

Threat actors with ties to North Korea have been linked to a fresh set of malicious npm packages that masquerade as Rollup polyfill tooling to facilitate remote access and data theft.

According to JFrog, the packages “rollup-packages-polyfill-core” an… Continue reading North Korea-Linked npm Packages Mimic Rollup Polyfills to Steal Developer Secrets

Posted in Uncategorized

Armored Likho Targets Government Agencies, Power Sector with BusySnake Stealer

A previously undocumented threat actor known as Armored Likho has been attributed to cyber attacks targeting government agencies and the electric power sector across Russia, Brazil, and Kazakhstan.

“Armored Likho blends financially motivated campaigns… Continue reading Armored Likho Targets Government Agencies, Power Sector with BusySnake Stealer

Posted in Uncategorized