New Linux, macOS malware hidden in fake Browserify NPM package
A new malicious package been spotted this week on the npm registry, which targets NodeJS developers using Linux and Apple macOS operating systems for its recon activities. The malicious package is called “web-browserify.” It imitates the popular Browserify npm component, downloaded over 160 million times over its lifetime. […]
Microsoft April 2021 Patch Tuesday fixes 108 flaws, 5 zero-days
Today is Microsoft’s April 2021 Patch Tuesday, and with it comes five zero-day vulnerabilities and more Critical Microsoft Exchange vulnerabilities. It has been a tough couple of months for Windows and Microsoft Exchange admins, and it looks like April won’t be any easier, so please be nice to your IT staff today. […]
CS:GO, Valve Source games vulnerable to hacking using Steam invites
A group of security researchers known as the Secret Club took it to Twitter to report a remote code execution bug in the Source 3D game engine developed by Valve and used for building games with tens of millions of unique players. […]