Chaotic Deputy: Critical vulnerabilities in Chaos Mesh lead to Kubernetes cluster takeover
September 16, 2025 | 11 min read
September 16, 2025
6 min read
Recently, the npm ecosystem has faced its third large-scale attack. Following the recent compromise of the nx packages and another wave targeting popular packages, the registry has once again been attacked. The first report came from Daniel Pereira, who identified a compromised package: @ctrl/tinycolor@4.1.1. By the end of the day, JFrog’s malware scanners had…
September 16, 2025 | 11 min read
September 9, 2025 | 3 min read
September 11, 2025 | 5 min read
September 9, 2025 | 33 min read
September 10, 2025 | 6 min read
September 10, 2025 | 4 min read
September 9, 2025 | 7 min read
September 9, 2025 | 5 min read
September 9, 2025 | 7 min read
September 9, 2025 | 7 min read