news
Security Leftovers
-
Purism ☛ Invisible Dependencies, Visible Damage: The Case for Supply Chain Hygiene
On September 8th, Check Point Research confirmed what many of us in the privacy and security trenches have been warning about for years: the weakest link in your security posture may not be your systems at all — it may be the invisible web of third-party integrations you’ve tacitly approved, often without full visibility into their downstream dependencies.
-
OpenSSF (Linux Foundation) ☛ Celebrating the Community: OpenSSF at Open Source Summit and OpenSSF Community Day Europe Recap
From August 25 to 28, 2025, the 'Linux' Foundation hosted a high-impact week of open source collaboration and innovation in Amsterdam. OpenSSF’s participation, in both Open Source Summit Europe and OpenSSF Community Day Europe, brought together developers, maintainers, researchers, and policymakers to strengthen software supply chain security and align on global regulations like the EU Cyber Resilience Act (CRA). Photos and recordings are now available!
-
Cryptonews ☛ New Malware Exploits Fake Job Ads to Hit Crypto Wallets on Windows, Mac, Linux [Ed: Scam deflecting blame to other scams]
ModStealer has remained undetected by major antivirus engines since it was first uploaded to VirusTotal nearly a month ago.
-
Decrypt ☛ News Explorer — Stealthy Malware Strain Targeting Crypto Wallets on Windows, Linux, and MacOS Systems
-
Hacker News ☛ CHILLYHELL macOS Backdoor and ZynorRAT RAT Threaten macOS, Windows, and Linux Systems
Cybersecurity researchers have discovered two new malware families, including a modular Apple macOS backdoor called CHILLYHELL and a Go-based remote access trojan (RAT) named ZynorRAT that can target both Windows and Linux systems.