Mac Users Targeted by Spyware Spreading via Xcode Projects

The XCSSET suite of malware also hijacks browsers, has a ransomware module and more — and uses a pair of zero-day exploits. Continue reading Mac Users Targeted by Spyware Spreading via Xcode Projects

Zip Slip Flaw Affects Thousands of Open-Source Projects

An exploit allows attackers to remotely overwrite archive files with their own content, and from there pivot to achieving remote command execution on the machine. Continue reading Zip Slip Flaw Affects Thousands of Open-Source Projects