Security news that informs and inspires

2376 articles by

Decipher Podcast: Source Code 3/25

This week's Source Code podcast by Decipher takes a look behind the scenes at top news with input from our sources.

Source Code, Podcast

Azure Developers Targeted By Malicious NPM Packages

A recent campaign targeted Azure developers with malicious npm packages designed to look like legitimate tools.

Supply Chain

North Korean Actors Exploited Chrome Flaw to Target U.S. Orgs

Google researchers have detailed campaigns by two North Korean government-backed groups that exploited a now-fixed Chrome flaw to target organizations across various industries.

Lazarus, Google Chrome, Exploit Kits

U.S. Indicts Four Russians Allegedly Behind Triton and Dragonfly Attacks

The U.S. has indicted four Russians it alleges are affiliated with the FSB and GRU units responsible for the Triton and Dragonfly attacks against critical infrastructure in the United States and abroad.

Russia

Lapsus$ Group Uses ‘Unique Blend’ of Social Engineering, Identity-Centric Tactics

The Lapsus$ group, which most recently claimed breaches of Microsoft and Okta, relies on several tactics used less frequently by other threat groups.

Data Breaches, Threat Actors