The npm package known as “tensorlake,” a TypeScript software development kit (SDK) for Tensorlake applications, sandboxes, and cloud services, was compromised as part of a ChainDrop / Shai-Hulud… Continue reading
Tag: Deliver
Ravie LakshmananOct 07, 2026Supply Chain / Malware Cybersecurity researchers have disclosed details of a long-running npm supply chain malware campaign that pushes information stealers and remote access trojans… Continue reading
Ravie LakshmananOct 07, 2026Malware / Web Security The Computer Emergency Response Team of Ukraine (CERT-UA) has identified more than 100 compromised websites that have been injected with malicious… Continue reading
Threat actors have been observed attempting to exploit a now-patched critical security flaw impacting the Realtek Jungle software development kit (SDK) to deploy a botnet malware called Cling…. Continue reading
Ravie LakshmananSep 30, 2026Malware / Artificial Intelligence Threat actors are abusing ChatGPT Custom GPTs to disguise them as legitimate product offerings and direct unsuspecting victims to malicious sites… Continue reading
Crimson Desert’s Charting the Unknown DLC delayed by two weeks “to deliver a more polished and stable gameplay experience”
Crimson Desert developer Pearl Abyss today announced it’s delaying Charting the Unknown, the game’s first post-launch add-on. Previously set for release 15th October, the DLC’s release date has… Continue reading
Russia’s Star Blizzard Targets 100+ Organizations With Fake Event Invites to Deliver Backdoor
Russian state hackers known as Star Blizzard have been using fake event invitations to trick people into installing a backdoor on their Windows computers, according to Microsoft. The campaigns,… Continue reading
"The Switch 2 Build Is Not Where We Want It To Be" – RuneScape: Dragonwilds Team Promises To Deliver Visual Improvements
Expect “incremental” changes going forward. Last week, the RuneScape team Jagex released its new open-world survival game RuneScape: Dragonwilds on Switch 2. We reported earlier this week how… Continue reading
Attackers Use Malicious Terraform Providers to Deliver Go Malware via HashiCorp Registry
Cybersecurity researchers have disclosed Go-based malware distributed via two Go Modules and two Terraform providers, marking the first time threat actors are using the centralized repository hosted by… Continue reading
Ravie LakshmananSep 23, 2026Malware / Cloud Security Unknown threat actors have managed to compromise two legitimate MemTensor packages across the npm and Python Package Index (PyPI) repositories to… Continue reading








