Tagged: supply chain attack

Klue OAuth breach diagram showing stolen OAuth tokens used to exfiltrate customer Salesforce data 0

Klue OAuth Breach Drives Salesforce Data Theft

The market intelligence platform Klue has confirmed a breach of part of its integration infrastructure. Attackers obtained OAuth tokens, the digital keys that grant access between services. With those keys, they slipped into the...

OptinMonster supply chain attack CDN compromise diagram showing backdoor plugin installation on WordPress admin accounts 0

OptinMonster Supply Chain Attack Hits 1.2M Sites

Popular WordPress plugins have found themselves at the center of a supply chain attack, where the products themselves were not compromised directly. Instead, attackers targeted the infrastructure responsible for distributing them. Three plugins from...

Miasma supply chain attack, GitHub malware toolkit, software supply chain security, npm package malware 0

Miasma Toolkit Targets Software Supply Chains

When a new batch of source code appeared on GitHub, it unexpectedly caught the attention of security researchers. Over the past few days, repositories bearing the name Miasma-Open-Source-Release began appearing across the platform in...