The inaugural Gartner® Magic Quadrant™ for Software Supply Chain Security is outGET THE REPORT
ReversingLabs: The More Powerful, Cost-Effective Alternative to VirusTotalSee Why
Get an Inside Look at Spectra Assure Community | Stop Trusting & Start Verifying Your SoftwareWatch Now
The Tale of ClickFix: How Malware-as-a-Service campaigns turn users into the ultimate execution vectorDownload Now

Threat Research

The Week in Security: Russia takes aim at Ukraine with Sandworm, the truth about Russia's top search engine

The Week in Security: Russia takes aim at Ukraine with Sandworm, the truth about Russia's top search engine

Welcome to the latest edition of The Week in Security, which brings you the newest headlines from both the world and our team across the full stack of security: application security, cybersecurity, and beyond.

The Week in Security: Russia takes aim at Ukraine with Sandworm, the truth about Russia's top search engine
W4SP continues to nest in PyPI: Same supply chain attack, different distribution method

W4SP continues to nest in PyPI: Same supply chain attack, different distribution method

Days after researchers for Phylum and Checkmarx revealed an ongoing software supply chain attack spreading the W4SP Stealer malware through malicious packages on the Python Package Index (PyPI), ReversingLabs researchers discovered 10 additional PyPI packages pushing modified versions of W4SP that were overlooked.

W4SP continues to nest in PyPI: Same supply chain attack, different distribution method