RATatouille: Popular NPM project backdoored with Remote Access Trojan (RAT)

Delivering malware via Google Calendar invites and PUAs in an npm package

Offical XRP NPM package has been compromised and key stealing malware introduced

Malware hiding in plain sight: Spying on North Korean Hackers

The Startup's Open-Source Guide to Application Security

Using LLMs to find vulnerabilities in open-source tools

The State of SQL Injection today