Veille live
Veille CyberInfra — Veille cybersecurite : Microsoft: September updates break File History backup feature Veille CyberInfra — Veille cybersecurite : ClickFix Lures Deploy ChainScript RAT Using Polygon to Rotate C2 Infrastructure Veille CyberInfra — Veille cybersecurite : Microsoft reminds admins to migrate Entra ID users to passkeys Veille CyberInfra — Veille cybersecurite : Malicious npm packages evade install-script defenses at runtime Veille CyberInfra — Veille cybersecurite : Jade Sleet Linked to Indian IT Provider Breach With FLATROOF and ROOFDECK Backdoors Veille CyberInfra — Veille cybersecurite : Viral AI actress’ hotline face-scans every caller, watches their mood Veille CyberInfra — Veille cybersecurite : Microsoft: September updates break File History backup feature Veille CyberInfra — Veille cybersecurite : ClickFix Lures Deploy ChainScript RAT Using Polygon to Rotate C2 Infrastructure Veille CyberInfra — Veille cybersecurite : Microsoft reminds admins to migrate Entra ID users to passkeys Veille CyberInfra — Veille cybersecurite : Malicious npm packages evade install-script defenses at runtime Veille CyberInfra — Veille cybersecurite : Jade Sleet Linked to Indian IT Provider Breach With FLATROOF and ROOFDECK Backdoors Veille CyberInfra — Veille cybersecurite : Viral AI actress’ hotline face-scans every caller, watches their mood

Veille cybersecurite : Rust Supply Chain Attack Puts Build-Time Malware in Crates with 245 Million Downloads

21/08/2026

Source : The Hacker News

The Rust Project has deleted malicious versions of three widely used Rust crates from crates.io after a compromised maintainer account published releases that added a typosquatted dependency whose build script downloaded and executed a remote payload during compilation.

The affected releases are arrayref 0.3.10, internment 0.8.7, and append-only-vec 0.1.9, all published from the same owner

Lire l’article original


Vous vous demandez si votre entreprise est exposee a ce type de faille ? Reservez un appel decouverte gratuit.

← Retour au blog