vivek@kali:~/blog$ grep -r "threat-intel" ./posts/

DevSecOps

Security research, ethical hacking tutorials, cybercrime case studies, and threat intelligence from the field.

Three Developer Supply Chain Attacks in One Week: NPM AMOS Stealer, Rogue VS Code Extension and GhostCommit AI Prompt Injection (July 2026) CVE-2026-5196
Featured · 10 min read
Three developer supply chain attacks confirmed in seven days: NPM AMOS stealer via @copilot-mcp/apex postinstall dropper, fake VS Code Markdown extension beaconing credentials, and GhostCommit PNG-embedded prompt injection…
Jul 30, 2026 DevSecOps
Read Full Post →