1. Basic Information
Article Title: Coder's registry infrastructure compromised to push malicious modules
Publisher: BleepingComputer
Publication Date: 2026-09-03
Original Source: BleepingComputer
1. Basic Information Article Title: Coder's registry infrastructure compromised to push...
1. Basic Information
Article Title: Coder's registry infrastructure compromised to push malicious modules
Publisher: BleepingComputer
Publication Date: 2026-09-03
Original Source: BleepingComputer

Attackers compromised Coder's Cloudflare infrastructure and added unauthorized registry servers that delivered malicious…

Socket traced the module to 222 repos across 190 accounts staging Vidar, RATs, and XMRig miners, with encrypted payload locations…

Hackers are abusing a Ghost CMS website flaw to serve fake Cloudflare verification pages that pressure users into infecting their…

Security researchers at Mozilla's 0DIN platform have shown how a single compromised GitHub repo can take over a developer's…

TrapDoor spread 34 malicious packages across npm, PyPI, and Crates.io, stealing developer credentials and enabling persistence.

ThreatsDay Bulletin: Kali365 MFA bypass, Azure priv-esc, FIFA scams, OAuth theft, fake installers, and supply chain attacks.