GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Across this campaign, the threat actor shows an understanding of developer behavior and exploits the current hype of AI coding platforms. These attack patterns are highly likely targets the developers and IT administrators. By impersonating brands embedded in routine developer workflows, including Node.js, Chocolatey, and KeePassXC, the actor weaponized familiar installation patterns to deliver infostealer malware. This approach target trust in developer tooling, turning routine software adoption into an initial access vector.

Download link

https://cdn.fosstodon.org/media_attachments/files/116/646/978/052/928/854/original/8e6a45e600ab8ee0.png

Notices where this attachment appears

  1. Embed this notice
    Team KeePassXC (keepassxc@fosstodon.org)'s status on Thursday, 28-May-2026 04:40:43 JST Team KeePassXC Team KeePassXC

    Here's your regular reminder to always check where you're downloading things from. #KeePassXC 's website is https://keepassxc.org.

    Do not blindly trust search results or AI answers at the top!

    https://blog.eclecticiq.com/seo-poisoning-campaign-leverages-gemini-and-claude-code-impersonation-to-deliver-infostealer

    In conversation about 3 months ago from fosstodon.org permalink
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.