Skip to content
Xygeni Logo White
  • Products
    Agentic AI
    • DevAI AI Assistant & Automation for Devs
    • CoreAIRisk Intelligence & Orchestration
    AI-Powered AppSec
    • AI SecurityDetect AI risks hidden in prompts, skills, and MCP configs
    • SASTHigh-precision SAST with zero-noise and AI remediation
    • SCAReachability, malware detection, and safe updates.
    • DASTRuntime Application Security Testing
    • Secrets SecuritySecrets Detection & Auto-Revocation
    • CI/CD SecurityPipeline & Build Protection
    • IaC SecurityCloud & Config Security
    • API SecurityFind the Exposure Before You Deploy It
    Posture Management
    • ASPMUnified risk view, asset inventory, and compliance.
    Advanced Threats
    • Malware DefenseSupply Chain Malware Protection
    • Build SecurityBuild Integrity & Provenance
    • Anomaly DetectionBehavioral Threat Detection
    • ShieldBlock malicious packages before they execute
    Download whitepaper
  • Solutions
    Who Xygeni is built for
    • DevelopersFix issues in IDEs with minimal noise and friction.
    • DevOps & DevSecOpsAutomated policies, visibility, and remediation at scale.
    • Security Leaders (CISO)Posture management, compliance, and reporting.
  • Resources
    DISCOVER
    • Resource LibraryAll Resources in One Place
    • Product DatasheetsOfficial Product Specs
    LEARN
    • Webinars & VideosTalks, Demos & Tutorials
    • ArticlesSecurity & AppSec Insights
    • Reports & GuidesIn-depth Security Research
    • GlossaryAppSec & DevSecOps Terms
    THREAT INTELLIGENCE
    • Malicious Code Digest​ Resource LibraryThreat Intelligence Feed
    Download whitepaper
  • Company
    • AboutMission & Team
    • Case StudiesReal-world impact
    • PartnersResellers and technology partners
    • Press MediaNews & Announcements
    • EventsStay up to date with upcoming events
    • Contact UsGet in Touch
  • Pricing
  • Blog
  • Login
Start Free
Book a Demo

Category: Must Read

DeviceDoor: a public npm package shipping a Microsoft 365 device-code phishing and bulk-mail framework

DeviceDoor npm Package Shipping a Microsoft 365 Device-Code Phishing Framework

Uncover the details of The 24712-pl Campaign and the zero-dependency packages exploited during a security incident.

OWASP Global AppSec EU 2026 Vienna: Key Takeaways on Secure Software Supply Chain, MCP Security, and the AI-BOM

secure software supply chain, ai bom, mcp security

Uncover the details of The 24712-pl Campaign and the zero-dependency packages exploited during a security incident.

AI Security at OWASP Global AppSec EU 2026: Meet Xygeni in Vienna

OWASP GLOBAL Appsec AI Security

Uncover the details of The 24712-pl Campaign and the zero-dependency packages exploited during a security incident.

CryptoDAO Confusion: eleven npm packages, one payload, harvesting CI/CD and crypto-wallet secrets

CryptoDAO Confusion: npm Packages Harvesting CI/CD and Crypto Secrets

Uncover the details of The 24712-pl Campaign and the zero-dependency packages exploited during a security incident.

Permission Slip: An npm “Authorized Research” Cover Story Hiding Cloud-Metadata Probes and SYSTEM Persistence

Permission Slip: npm Package Hiding Cloud & System Threats

Uncover the details of The 24712-pl Campaign and the zero-dependency packages exploited during a security incident.

Ectoplasm: npm install hooks that harvest AWS credentials behind a container-only trigger

Ectoplasm npm Install Hooks That Steal AWS Credentials

Uncover the details of The 24712-pl Campaign and the zero-dependency packages exploited during a security incident.

SeedSweep: Ten Crypto-Themed npm Packages That Only Run When No One Is Watching

SeedSweep: Ten Malicious npm Crypto Packages

Uncover the details of The 24712-pl Campaign and the zero-dependency packages exploited during a security incident.

PairLoop: One npm Package, Seventy Versions, and a Hidden Windows Remote-Control Panel

PairLoop: Hidden Remote-Control Panel in npm Package

Uncover the details of The 24712-pl Campaign and the zero-dependency packages exploited during a security incident.

ConsentMask: An npm Package That Wears a Telemetry Consent Banner Over Developer-Identity Harvesting

ConsentMask The npm Package Hiding Developer Identity Harvesting

Uncover the details of The 24712-pl Campaign and the zero-dependency packages exploited during a security incident.

JulesJacker: A Fake-PoC npm Worm That Impersonates Google’s Jules Agent — and Turns on the Sandbox Analyzing It

JulesJacker: Fake npm Worm Impersonates Jules AI

Uncover the details of The 24712-pl Campaign and the zero-dependency packages exploited during a security incident.

RuntimeBroker: an npm Typosquat Plants a 40-Chain Crypto-Clipper as a Cross-OS \”System Runtime Helper”\

RuntimeBroker npm Typosquat Plants Crypto Clipper

Uncover the details of The 24712-pl Campaign and the zero-dependency packages exploited during a security incident.

AuditorTrap: A 22-Package Fake Crypto Security Guild on npm With Two Parallel Payloads

AuditorTrap

Uncover the details of The 24712-pl Campaign and the zero-dependency packages exploited during a security incident.

← Previous
Next →
Xygeni Logo White

© 2026 Xygeni. All rights reserved

Linkedin-in X-twitter Youtube

Products

  • DevAI
  • CoreAI
  • SAST
  • SCA
  • DAST
  • Secrets Security
  • CI/CD Security
  • IaC Security
  • ASPM
  • Malware Defense
  • Build Security
  • Anomaly Detection

Resources

  • Pricing
  • Resource Library
  • Datasheets & Product Briefs
  • eBooks
  • Whitepapers & Reports
  • Articles
  • Product Tour
  • Video Demonstrations
  • Webinars
  • Glossary
  • Top Cybersecurity Tools Lists
  • Malicious Code Digest​

Company

  • About
  • Join Newsletter
  • Case Studies
  • Events
  • Press Media
  • Contact Us

Legal

  • Privacy Policy
  • Cookie Policy
  • Legal Notice
  • Platform Terms
  • Website Terms
  • Subprocessors
  • DPA