Vulnerable U

805 posts

Vulnerable U banner
Vulnerable U

Vulnerable U

@vuln_u

Exploring the intersection of cybersecurity, privacy, technology, and mental health.

Join over 30,000 pros here: Katılım Ocak 2024
11 Takip Edilen148 Takipçiler
Vulnerable U
Vulnerable U@vuln_u·
Thousands of internal repos were compromised through a single malicious VS Code extension. Normal developer tools are becoming one of the easiest ways into major organizations 🗝️
English
2
4
15
3.4K
Vulnerable U
Vulnerable U@vuln_u·
IDE extensions are quietly becoming one of the most overlooked attack surfaces in your stack. If you're not auditing them the same way you audit your dependencies, this week is a good time to start.
English
1
0
1
24
Vulnerable U
Vulnerable U@vuln_u·
Newsletter #169 is out now 📧 GitHub just confirmed 3,800 internal repositories were stolen because one employee installed a malicious VS Code extension. And yes, GitHub owns NPM, which sits at the center of every supply chain campaign we've been covering for weeks.
Vulnerable U tweet media
English
1
2
10
1.2K
Vulnerable U
Vulnerable U@vuln_u·
Dark Sword is a five-stage exploit chain that starts entirely in JavaScript, works through Safari, and ends with read-write access on iOS 📲
English
1
0
0
60
Vulnerable U
Vulnerable U@vuln_u·
Insider threats are averaging $13.1 million per incident, and 8% of employees are responsible for 80% of your organization's security risk. The threat isn't evenly distributed and most teams are still treating it like it is.
English
1
0
0
26
Vulnerable U
Vulnerable U@vuln_u·
Compromising an AI gateway gives attackers keys to everything downstream. The report documents autonomous attack workflows, AI-powered recon, and vibe-coded payloads already being used in the wild.
English
1
0
0
32
Vulnerable U
Vulnerable U@vuln_u·
The latest Google threat intelligence report adds more evidence that AI is already being used in active threat actor operations. 👇
Vulnerable U tweet media
English
1
0
0
67