cd/sources/safedep-auto-discovered· home› sources› Safedep (auto-discovered)
cat /sources/safedep-auto-discovered.feed | wc -l → 24

Safedep (auto-discovered)

articles 24 domain safedep.io → page 1/2 feed RSS
10:00
2026-10-02
safedep.io
ai-safety

An Attacker Hijacked an AI Coding Assistant to Spread a Worm

Security researchers reported in September 2026 that an attacker hijacked a live AI coding assistant session at a software company, causing the assistant to recommend a malicious PyPI package whose in…

10:00
2026-09-11
safedep.io
ai-tools

The Agentic IDE Extension Blind Spot

Cursor's "Import VS Code Configuration" feature copies only extension names, not versions, from Visual Studio Code, so the agentic IDE installs whatever version Open VSX labels newest, according to a …

07:30
2026-09-08
safedep.io
ai-products

Introducing SafeDep Threat Intel

SafeDep has launched SafeDep Threat Intel, an add-on to any paid plan that provides SOC and cyber defense teams with a malicious package feed API and a Threat Intel Dashboard, covering npm, PyPI, Go, …

10:00
2026-06-25
safedep.io
ai-safety

Miasma Worm Infects Multiple LeoPlatform npm Packages

A Miasma worm variant infected 20 npm packages under the LeoPlatform organization on June 24, 2026, after an attacker compromised a single maintainer's tokens. The malicious payload, a polymorphic cre…

00:00
2026-06-12
safedep.io
ai-safety

astro.config.mjs Supply Chain Attack via Blockchain C2

A supply chain attack targeting the open-source tool Understand-Anything (57,000+ GitHub stars) hid an obfuscated payload in `homepage/astro.config.mjs` via pull request #206, which executes automatic…

10:00
2026-06-11
safedep.io
ai-agents

Miasma Worm: Most Infected GitHub Repos Are Still Live

Eight days after the Miasma worm injected a 4.3 MB credential stealer into public GitHub repositories, 123 repositories across 56 accounts still carry the live dropper on 665 branches, according to a …

10:00
2026-06-09
safedep.io
ai-tools

Inside the Miasma Software Supply Chain Attack Toolkit

The Miasma software supply chain attack toolkit has been released as open source across multiple GitHub repositories, likely through compromised developer accounts. The toolkit enables attackers to ex…

10:00
2026-06-06
safedep.io
ai-agents

Config Files That Run Code: Supply Chain Security Blindspot

A single unsigned commit to the `icflorescu/mantine-datatable` repository added six files, five of which serve as launchers that execute a 4.3 MB dropper at `.github/setup.js`. The dropper, obfuscated…

10:00
2026-06-05
safedep.io
ai-agents

Miasma Worm Targets AI Coding Agents via GitHub Repos

On June 3, 2026, attackers pushed malicious commits to the GitHub repository `icflorescu/mantine-datatable` and four sibling repos, planting a 4.3 MB payload from the Miasma worm family. The commit ad…

10:14
2026-05-29
safedep.io
ai-safety

A Supply Chain Rat Exfiltrating to HuggingFace

A malicious npm package called `js-logger-pack` evolved through 29 versions into a full remote access trojan (RAT) named `MicrosoftSystem64` that exfiltrates stolen data to attacker-controlled Hugging…

03:21
2026-05-21
safedep.io
ai-agents

Polymarket npm Packages Steal Crypto Wallet Keys

Nine malicious npm packages impersonating Polymarket trading tools were published on May 20, 2026, by the account "polymarketdev," stealing cryptocurrency wallet private keys upon installation. The pa…

12:00
2026-05-13
safedep.io
cybersecurity

Malicious npm Packages Backdoor Claude Code Sessions

Five typosquatting npm packages published by accounts named "superbase" and "micresoft" contain a hidden 4.5 MB ELF binary that executes automatically upon `npm install` and, through a hijacked `Sessi…

00:00
2026-05-11
safedep.io
ai-tools

Endpoint Protection for Developer Machines

SafeDep has released PMG, an open-source package guard that intercepts npm, pip, and cargo installs to block malicious packages before their post-install scripts execute. The tool, which can be synced…

page 1 / 2 next →