
Malware & Ransomware
Shai-Hulud worm enters AI sector through tainted Tensorlake npm package
Credential-stealing malware was detected within minutes of the npm release, though the full scope of the compromise remains unknown to security researchers.
Everything Patch Gazette has reported about credential theft: 2 stories, newest first. Part of our Cyber Attacks coverage.

Credential-stealing malware was detected within minutes of the npm release, though the full scope of the compromise remains unknown to security researchers.

Adversary in the middle phishing hides behind legitimate-looking login pages, making standard URL checks and visual inspections useless against sophisticated credential theft.