الاثنين 27 يوليو 2026 03:03:10 GMT+02:00

Netcrook

الرئيسيةالبيان
الأخبار
Techcrook
Geocrook
WikicrookالفريقAppاتصالتسجيل الدخول
EnglishItaliano

#secret theft


When a Trusted npm Package Becomes a Secret Hunter

Published: 13 July 2026 10:26Category: CybercrimeGeo: Europe / PortugalAuthor: CIPHERWARDEN

A reported compromise in the Jscrambler package shows how install-time code can turn developer machines and CI pipelines into high-value targets for cloud and wallet secrets.

When a PNG Becomes a Secret Courier for AI Agents

Published: 11 July 2026 12:03Category: AI Security & Agentic SystemsGeo: North America / USAAuthor: INTEGRITYFOX

A demonstrated image-based prompt injection shows how a harmless-looking file can steer an AI coding workflow toward sensitive repository data.

When Browser Locks Meet Malware Tricks: Vidar and the Chrome Secret Hunt

Published: 20 June 2026 08:02Category: Malware & BotnetsGeo: North America / USAAuthor: SIGNALMONK

A reported Vidar technique shows how browser hardening can push infostealers toward live Windows process abuse instead of simple file theft.

Macs, Wallets, and SSH Keys: The Quiet Theft Path North Korean Operators Keep Chasing

Published: 03 June 2026 10:32Category: Cyber Warfare & Nation-State OperationsGeo: Asia / North KoreaAuthor: AGONY

A macOS-focused intrusion campaign attributed to Sapphire Sleet puts the spotlight on a familiar cybercrime prize: secrets that can be reused far beyond one laptop.

The New Battlefield for AI Coders Is the Host Itself

Published: 28 May 2026 21:01Category: AI Security & Agentic SystemsGeo: Europe / FranceAuthor: INTEGRITYFOX

Edamame is pitching runtime verification for coding agents, a sign that AI security is moving from prompt filtering to watching what autonomous tools actually do on a machine.

Workflow Poisoning Turns GitHub Automation into a Secret-Harvesting Trap

Published: 25 May 2026 10:08Category: Cloud, SaaS & Identity SecurityGeo: North America / USAAuthor: SHADOWFIREWALL

A large repository campaign shows how CI files can become the real target when attackers aim for credentials, tokens, and trust in the build pipeline.

أصبحت خط أنابيب البناء هو الهدف: ما الذي يمكن أن يفعله فعلاً مشرف npm تم اختراقه

نشر: 22 مايو 2026 10:41الفئة: البرمجيات الخبيثة والروبوتاتالموقع: آسيا / الصينالكاتب: SIGNALMONK

يمكن لناشر حزمة مخترق في منظومة JavaScript أن يحوّل عمليات التثبيت الروتينية إلى مسار لسرقة الأسرار، مع تحمّل أنظمة CI/CD أعلى مستوى من المخاطر.

الوسم الذي كذب: كيف حوّل GitHub Action التحكم بالإصدارات إلى فخ للاعتمادات

يُقال إن GitHub Action تابعًا لجهة خارجية أُعيد توجيهه عبر وسوم قابلة للتغيير، ما حوّل اعتمادًا روتينيًا في سير العمل إلى مسار لتنفيذ التعليمات البرمجية وسرقة أسرار CI/CD.

عندما تصبح خطوط البناء طُعماً: حادثة TanStack على npm والصيد السري داخل CI

يكشف اختراق مستمر لـ 84 حزمة npm ضمن منظومة TanStack كيف يمكن لاعتماد مُلوَّث أن يحوّل عمليات البناء الآلية إلى هدف عالي القيمة لسرقة الاعتمادات.

تزعزع سلسلة الثقة في npm: الحزم المرتبطة بـ TanStack وصيد أسرار CI

أداة لسرقة الاعتمادات يُقال إنها وصلت عبر حزمة برمجية تسلط الضوء على خطوط أنابيب البناء، حيث قد يكون لإصدار سيئ واحد أثر أكبر من التطبيق الذي يشغّله.