Press Wizards retweetet

I'm following this closely because I care about OSS & the maintainers behind it. Many are under-resourced to handle this level of coordinated attack. Access from recent compromises is now being operationalized for follow-on ransomware attacks. It's a bad situation. Please stay vigilant.💜
Socket@SocketSecurity
TeamPCP has partnered with ransomware group Vect after exfiltrating ~300GB of credentials from CI/CD environments, targeting open source supply chains. “We will chain these compromises into devastating follow-on ransomware campaigns.” Details → socket.dev/blog/teampcp-p…
English











