Skip to content
Legacy Python Bootstrap Scripts Create Domain-Takeover Risk in Multiple PyPI Packages

Legacy Python Bootstrap Scripts Create Domain-Takeover Risk in Multiple PyPI Packages

Nov 28, 2025Ravie LakshmananMalware / Vulnerability Cybersecurity researchers have discovered vulnerable code in legacy Python packages that could potentially pave the way for a supply chain compromise on the Python Package Index (PyPI) via a… 

North Korean Hackers Deploy 197 npm Packages to Spread Updated OtterCookie Malware

North Korean Hackers Deploy 197 npm Packages to Spread Updated OtterCookie Malware

Nov 28, 2025Ravie LakshmananSupply Chain Attack / Malware The North Korean threat actors behind the Contagious Interview campaign have continued to flood the npm registry with 197 more malicious packages since last month. According to… 

Brighten the holidays with buy one get one free Christmas lights

Brighten the holidays with buy one get one free Christmas lights

Need some holiday string lights? How about permanent outdoor lights? And maybe some festive indoor curtain lights? You can get them all in Govee’s Christmas holiday bundle, and it’s selling for 25 percent off—unless you’re in the BOGO know, that is.  Here’s the hidden detail…