Fake Claude Code installer malware used Google Ads to place spoofed AI tool pages above real documentation since March 2026.
Microsoft has identified an active supply chain attack targeting the npm package ecosystem. On May 28, 2026, a single threat actor operating under the newly created maintainer alias vpmdhaj (a39155771 ...
Ghost CMS flaw CVE-2026-26980 enabled attacks on 700+ sites, injecting ClickFix malware through fake CAPTCHA pages.
Packagist packages hid malicious package.json scripts, enabling Linux binary execution during installs and workflows.
一部の結果でアクセス不可の可能性があるため、非表示になっています。
アクセス不可の結果を表示する