Category: Attacks Analysis

chmod 777 - linux permissions - backdoor attack

Chmod 777 Is Not a Fix: How a Misconfigured Script Became a Backdoor

Chmod 777 may fix errors fast but breaks Linux permissions, opening the door to backdoor attacks in CI/CD. Learn safer DevSecOps practices!
watering hole attacks - what is a watering hole attack

From Dev to Target: How Watering Hole Attacks Infiltrate Your Pipeline

Discover what is a watering hole attack and how watering hole attacks infiltrate trusted dev resources to compromise your CI/CD pipeline!
which of the following are common causes of breaches - what is a data breach - how to prevent data breach

Which of the Following Are Common Causes of Breaches?

Do you know which of the following are common causes of breaches, what is a data breach & how to prevent them? Take a peek!
ai-code-ai-generated-code-ai-sast

AI SAST: How to Secure AI Code Before It Ships

AI generated code is everywhere. Learn how AI SAST helps devs scan, secure, and trust their code—before it reaches production.
4 min read
how can malicious code do damage - how can malicious code cause damage - which of the following may indicate a malicious code attack

How Can Malicious Code Do Damage?

How can malicious code do damage? Discover how malicious code causes damage and which of the following may indicate a malicious code attack​!
6 min read
cve-2024-38526-polyfill.io-vulnerability

CVE-2024-38526: everything about Polyfill.io Vulnerability

CVE-2024-38526: Everything you need to know about the Polyfill.io vulnerability impacting millions of sites.
6 min read
notable-supply-chain-compromise-attacks-software-supply-chain-attacks-defending-against-software-supply-chain-attacks

Notable Supply Chain Compromise Attacks and Defenses

Defending against software supply chain attacks and notable supply chain compromise attacks with Xygeni solutions.
6 min read
polyfill-attack-polyfill-supply-chain-attack-software-supply-chain-attacks

Unmasking Polyfill: A Deep Dive

Protect your systems from the Polyfill and similar software supply chain attacks with real-time monitoring and secure dependency management.
7 min read
open-source packages

Protecting Against Open Source Malicious Packages: What Does (Not) Work

Learn about the flaws in protecting against malicious open-source packages software dependencies and open-source components.
Malicious Packages 5

Anatomy of Malicious Packages: What Are the Trends?

Discover trends in malicious packages and CWE 506. Learn how threat actors exploit open-source infrastructure and how to stay protected.
The Most Infamous Malware Attacks in History

The Most Infamous Malware Attacks in History

Explore the most infamous malware attacks in history and their impact on cybersecurity. Learn how to protect against these threats
9 min read
JA_NPM

NPM flooding case-study: “Down the Rabbit Hole looking for a Tea”

At Xygeni we observed a substantial deviation in the number of packages published on NPM, so we decided to take a look. Dive in!