Sponsor of the Day:
Jerkmate
https://www.aikido.dev/blog/glassworm-returns-unicode-attack-github-npm-vscode
Glassworm Returns: Invisible Unicode Malware Found in 150+ GitHub Repositories
Mar 17, 2026 - The Glassworm supply chain attack is back. Researchers uncovered malware hidden in invisible Unicode characters across 150+ GitHub repositories, plus npm...
malware foundgithub repositoriesglasswormreturnsinvisible
https://decrypt.co/361070/fbi-investigating-malware-steam-pc-games
FBI Investigating After Malware Found Lurking in Steam PC Games - Decrypt
Mar 13, 2026 - Feds are looking to hear from victims after several games on Valve’s Steam platform were found to be distributing malicious software.
steam pc gamesfbi investigatingmalware foundlurkingdecrypt
https://www.infoworld.com/article/4149909/pypi-warns-developers-after-litellm-malware-found-stealing-cloud-and-ci-cd-credentials-2.html
PyPI warns developers after LiteLLM malware found stealing cloud and CI/CD credentials | InfoWorld
Mar 25, 2026 - The compromised packages, linked to the Trivy breach, executed a three‑stage payload targeting AWS, GCP, Azure, Kubernetes configs, SSH keys, and automation...
litellm malwarefound stealingci cdpypiwarns
https://www.zdnet.com/article/confirmed-north-korean-malware-found-on-indian-nuclear-plants-network/
Confirmed: North Korean malware found on Indian nuclear plant's network | ZDNET
Oct 30, 2019 - Two days after rumors of a malware infection at the Kudankulam Nuclear Power Plant surfaced on Twitter, the plant's parent company confirms the security breach.
north korean malwareindian nuclearconfirmedfoundplant
https://www.infosecurity-magazine.com/news/north-korean-malware-found-at/
North Korean Malware Found at Indian Nuke Plant - Infosecurity Magazine
May 30, 2025 - Government-owned enterprise confirms infection
north korean malwareinfosecurity magazinefoundindiannuke
https://www.pcrisk.com/internet-threat-news/16247-north-korean-malware-found-in-indian-nuclear-power-station
North Korean Malware Found in Indian Nuclear Power Station
north korean malwarenuclear power stationfoundindian
https://www.csoonline.com/article/4149905/pypi-warns-developers-after-litellm-malware-found-stealing-cloud-and-ci-cd-credentials.html
PyPI warns developers after LiteLLM malware found stealing cloud and CI/CD credentials | CSO Online
Mar 25, 2026 - The compromised packages, linked to the Trivy breach, executed a three‑stage payload targeting AWS, GCP, Azure, Kubernetes configs, SSH keys, and automation...
litellm malwarefound stealingci cdcso onlinepypi
https://www.foxnews.com/tech/fake-windows-update-installs-hidden-malware
Fake Windows update page found to install password-stealing malware | Fox News
Apr 21, 2026 - A fake Windows update site uses a typosquatted domain mimicking Microsoft to deliver malware that steals passwords, payment details and login sessions from...
fake windowsstealing malwarefox newsupdatefound
https://www.infosecurity-magazine.com/news/apk-malformation-android-malware/
APK Malformation Found in Thousands of Android Malware Samples - Infosecurity Magazine
Apr 20, 2026 - APK malformation tactic now appears in over 3000 Android malware samples evading static analysis
android malwareinfosecurity magazineapkmalformationfound