Merav retweetledi

We'll be right back with your regularly scheduled TeamPCP programming, but while you wait ...
wiz.io/blog/fragnesia…

English
Merav
134 posts












🚨 s1ngularity: a supply chain attack hiding in the Nx npm package Malicious versions stole GitHub tokens, SSH keys, wallets, and secrets, even hijacking AI CLI tools to help exfiltrate data. 📂 Thousands of secrets leaked into attacker-created public GitHub repos.


🚨 TraderTraitor: North Korea's cyber "traitor" inside the crypto world. This hacking crew hijacks dev workflows, poisons open-source, and compromises cloud environments — all to steal billions in crypto. Here's how they do it 🧵






