developers

  1. Tomcat

    A wave of cyber attacks on ThinkPHP: Dama is a new problem for developers

    How old vulnerabilities are used to install a new web shell. Akamai report an increase in cyber attacks on vulnerable instances of the Chinese PHP framework ThinkPHP in order to install the Dama web shell. Dama allows hackers to continue exploiting compromised systems, turning them into part...
  2. Father

    Fix before release: Path Traversal is the main enemy of developers

    CISA and the FBI are calling for urgent measures to protect the code. CISA and the FBI called on software developers to more actively identify and eliminate path traversal vulnerabilities before releasing products to the market. Such flaws allow an attacker to create or overwrite critical...
  3. Father

    Billions under the hood: keyboard developers spy on Android users around the world

    Vulnerabilities in popular smartphone keyboards allow you to see what the user is typing. Citizen Lab identified vulnerabilities in popular keyboard applications that can be used to register keystrokes of Chinese users around the world. Security issues are present in almost all apps, including...
  4. Father

    Comments in the code as a weapon: a bug in GitLab allows you to secretly infect developers

    Will the flaw that allows viruses to be inserted into the code unnoticed be fixed? BleepingComputer identified a problem in the GitLab platform that allows attackers to distribute malware using comments in repositories. This feature can be used to create traps that look like legitimate files...
  5. Father

    Python Developers, attention: Hackers are Hunting your Discord

    Clever methods of disguise allow cyber villains to complete their plans, bypassing information security radars. Cybersecurity specialists from the company Fortinet identified a new malicious package in the registry for PyPI developers, aimed at stealing Discord user data. A package called...
  6. Teacher

    Hackers attack developers: BianLian uses TeamCity for extortion

    The new backdoor BianDoor finds an individual approach for each victim. The information security company GuidePoint Security has discovered that the BianLian group exploits vulnerabilities in the JetBrains TeamCity software to conduct ransomware attacks. Experts recorded a chain of attacks...
  7. Teacher

    5 Joomla Mistakes: CMS Developers allow Hackers to hack your site

    Joomla is playing catch - up with hackers, urgently fixing vulnerabilities. Five vulnerabilities were discovered in the Joomla content management system that can be used to execute arbitrary code on vulnerable sites. Developers have already fixed these security issues affecting several versions...
  8. Teacher

    Over 700 developers caught in typesquatting trap on PyPI

    The epidemic of malicious packages calls into question the security of the supply chain. As part of a recent study by security specialists from ReversingLabs, two malicious packages were found in the Python Package Index (PyPI) repository that used the DLL Sideloading technique to bypass...
  9. Teacher

    RustDoor: a spy-saboteur for macOS, aimed at developers

    Researchers have identified the connection of a dangerous malware with ransomware from ALPHV / BlackCat. A new type of malware for macOS, distributed under the guise of an update for Microsoft Visual Studio, has been discovered online. This backdoor macro, written in the Rust programming...
  10. Brother

    Developers become victims: How hackers steal computing resources through PyPI

    The sent Cossack is aimed at Linux systems. How soon will the victims of the attack notice something is wrong? Three malicious packages capable of deploying a cryptocurrency miner on infected Linux devices were recently discovered in the open repository for PyPI developers. Packages named...
  11. Carding 4 Carders

    Apple changes the rules for Russian developers

    Russian iOS apps get new payment options. In response to a fine from the Federal Antimonopoly Service, Apple allowed Russian developers of iOS and iPadOS apps to use third-party payment systems to sell their digital goods and services. The company also lowered its commission from 30% to 27% for...
Top