Overview
News
Technologies
Salaries
Products
People
Growth
Financials

Overview

Community-driven threat intelligence. Human-verified supply chain threats from every major open source ecosystem.

News

Blog 11 days ago
The OpenSourceMalware Show #18
Popular Rust package compromise, multi-ecosystem typosquatting attack, trends in binary payloads
Read more
Report
Blog 13 days ago
Windows Infostealer Hits npm and Ruby
Shared IOCs confirm StubMaker campaign originally discovered in Ruby was pushed concurrently to npm
Read more
Report
Blog 15 days ago
StubMaker RubyGems Campaign Delivers a Windows Infostealer
The malware fingerprints victims, downloads a Windows loader, and deploys an encrypted Go infostealer
Read more
Report
Blog 18 days ago
The OpenSourceMalware Show #17
Live from Hacker Summer Camp! Keyv and cacheable npm worm, WEL1DROPPER AI slopsquatting campaign, NullReceiver DPRK C2 technique.
Read more
Report
Blog 18 days ago
A Developer's Guide to Getting Rid of PolinRider
How you get infected with DPRK's PolinRider, why just rotating creds and wiping laptops doesn't stop it from coming back, and the field-tested steps that do.
Read more
Report
Pro access
Upgrade to see all 40 mentions
Upgrade to a paid plan to read every media mention of this company - funding news, awards, product launches and press releases from all the outlets writing about it.
Every media mention and press release
Funding news, awards and product launches
Fresh coverage from every outlet writing about the company
Upgrade now
Cancel anytime. Secure checkout. Instant activation.