Fake Repositories Masquerade as Popular Software, Secretly Installing Malware on Developer Machines

Attackers deployed thousands of fake GitHub repositories disguised as popular software, tricking developers into installing malware.
Data breaches at technology companies

Attackers deployed thousands of fake GitHub repositories disguised as popular software, tricking developers into installing malware.

Congressional backing for an appeal against FCC breach notification rules signals fundamental disagreements about regulatory authority and compliance feasibility.

Your grant application contains valuable personal data—here's what to do within 24 hours if it's been breached.

Most research platforms collect more about you than their privacy settings reveal, requiring researchers to actively disable tracking and restrict visibility to prevent data misuse.

Academic publisher breaches expose years of unpublished research, institutional intelligence, and researcher identities to attackers, enabling both direct theft and targeted follow-up attacks.

AI music platforms like Suno may have trained on millions of songs without artist permission, raising urgent questions about data ethics and copyright in generative AI.

Michigan and 41 other states settled with 23andMe over its 2023 genetic data breach, though bankruptcy limits payouts to just $18 million of the $150 million in allowed claims.

A new macOS malware uses Apple's own credentials to steal passwords and cryptocurrency without triggering security warnings.

A macOS malware variant tricks users with fake crash dialogs to steal login credentials, exploiting trust in Apple's own interface design.

macOS malware now tricks users through Apple's own crash reporter interface, exploiting trust to steal sensitive data and permissions.