Researchers warn of malicious typosquatting packages making their way into open source repositories

clock • 2 min read
Researchers warn of increase in malicious typosquatting packages making their way into open source repositories
Image:

Researchers warn of increase in malicious typosquatting packages making their way into open source repositories

Malicious typosquatting packages prey on naive users or developers who make a slight typographical error

Researchers at software supply chain management firm Sonatype have warned that attackers are increasingly using malicious 'typosquatting' packages infiltrating open source repositories to steal con...

To continue reading this article...

Join Computing

  • Unlimited access to real-time news, analysis and opinion from the technology industry
  • Receive important and breaking news in our daily newsletter
  • Be the first to hear about our events and awards programmes
  • Join live member only interviews with IT leaders at the ‘IT Lounge’; your chance to ask your burning tech questions and have them answered
  • Access to the Computing Delta hub providing market intelligence and research
  • Receive our members-only newsletter with exclusive opinion pieces from senior IT Leaders

Join now

 

Already a Computing member?

Login

You may also like
Massive IT outage hits airlines, hospitals and banks around the globe

Business Software

CrowdStrike update causes Windows to crash

clock 19 July 2024 • 2 min read
Over 380,000 web hosts affected by Polyfill attack

Threats and Risks

Follows Polyfill's acquisition by Chinese firm in February

clock 08 July 2024 • 3 min read
Cryptocurrency wallet maker Ledger hacked, hundreds of thousands stolen

Hacking

Ledger attributed the exploit to a phishing attack targeting a former employee

clock 18 December 2023 • 3 min read
Most read
01
02

Teen arrested over TfL cyberattack

13 September 2024 • 3 min read
03

Ransomware targets London branch of China's ICBC

13 September 2024 • 2 min read

Sign up to our newsletter

The best news, stories, features and photos from the day in one perfectly formed email.

More on Threats and Risks

China refuses to sign agreement on AI control of nuclear weapons

China refuses to sign agreement on AI control of nuclear weapons

Global call to maintain human involvement in all nuclear related decisions

clock 12 September 2024 • 3 min read
Microsoft Patch Tuesday: Four zero day bugs squashed

Microsoft Patch Tuesday: Four zero day bugs squashed

In a total of 79 vulnerabilities patched in September

John Leonard
clock 11 September 2024 • 2 min read
UK and allies reveal methodology of Russian GRU threat actor Unit 29155

UK and allies reveal methodology of Russian GRU threat actor Unit 29155

Group has targeted organisations including governments and critical infrastructure providers for espionage purposes

John Leonard
clock 06 September 2024 • 2 min read