• About
  • Privacy Policy
  • Disclaimer
  • Contact
Soft Bliss Academy
No Result
View All Result
  • Home
  • Artificial Intelligence
  • Software Development
  • Machine Learning
  • Research & Academia
  • Startups
  • Home
  • Artificial Intelligence
  • Software Development
  • Machine Learning
  • Research & Academia
  • Startups
Soft Bliss Academy
No Result
View All Result
Home Software Development

Sonatype reveals 18,000 malicious open source packages in its Q1 Open Source Malware Index

softbliss by softbliss
April 2, 2025
in Software Development
0
Sonatype reveals 18,000 malicious open source packages in its Q1 Open Source Malware Index
0
SHARES
1
VIEWS
Share on FacebookShare on Twitter


Sonatype, a company focused on software supply chain security, has announced the results of its quarterly Open Source Malware Index, which provides insights into malicious open source packages. 

The index found 17,954 malicious open source software packages, including several hijacked npm crypto packages, a malicious npm package disguised as the Truffle for VS Code extension, and fake Solana packages. 

Fifty-six percent of the packages were related to data exfiltration. These packages would be used by attackers to obtain sensitive data from the systems they are installed on. 

For comparison, the Q4 2024 report found that only 26% of packages were related to data exfiltration, signaling an increasing risk of sensitive information being compromised through open source components. 

Eighty percent of the packages Sonatype found were categorized as “sophisticated and threatening types of malware,” like droppers or code injection malware. 

“From hijacked crypto packages to fake development tools laced with spyware, Q1 2025 made it clear that open source malware threats are growing in both scale and sophistication. Threat actors continue to target the open source ecosystem with campaigns designed to steal credentials, exfiltrate sensitive data, and establish persistent access inside developer environments,” the company wrote in a blog post. 

Tags: IndexmaliciousMalwareopenpackagesrevealsSonatypesource
Previous Post

Let’s Make It So – O’Reilly

Next Post

11 Tools to Help Any Startup Track and Achieve Its Goals

softbliss

softbliss

Related Posts

Exploring the Magic Mirror: an interactive experience powered by the Gemini models
Software Development

Exploring the Magic Mirror: an interactive experience powered by the Gemini models

by softbliss
June 5, 2025
Applications of Artificial Intelligence in Business
Software Development

Applications of Artificial Intelligence in Business

by softbliss
June 4, 2025
5 subtle indicators your development environment is under siege
Software Development

5 subtle indicators your development environment is under siege

by softbliss
June 4, 2025
Microsoft Fabric for Azure Cloud Beyond the Buzz)
Software Development

Microsoft Fabric for Azure Cloud Beyond the Buzz)

by softbliss
June 3, 2025
Software Development

Extract a Number from a String with JavaScript

by softbliss
June 3, 2025
Next Post

11 Tools to Help Any Startup Track and Achieve Its Goals

Premium Content

Money may buy comfort — but at what price?

Money may buy comfort — but at what price?

March 24, 2025
When Censorship Gets in the Way of Art

When Censorship Gets in the Way of Art

May 31, 2025
BrainBees focuses on core categories and stable growth for GlobalBees segment

BrainBees focuses on core categories and stable growth for GlobalBees segment

May 26, 2025

Browse by Category

  • Artificial Intelligence
  • Machine Learning
  • Research & Academia
  • Software Development
  • Startups

Browse by Tags

Amazon API App Artificial Blog Build Building Business Data Development Digital Framework Future Gemini Generative Google Guide Impact Intelligence Key Language Large Learning LLM LLMs Machine Microsoft MIT model Models News NVIDIA Official opinion OReilly Research Science Series Software Startup Startups students Tech Tools Video

Soft Bliss Academy

Welcome to SoftBliss Academy, your go-to source for the latest news, insights, and resources on Artificial Intelligence (AI), Software Development, Machine Learning, Startups, and Research & Academia. We are passionate about exploring the ever-evolving world of technology and providing valuable content for developers, AI enthusiasts, entrepreneurs, and anyone interested in the future of innovation.

Categories

  • Artificial Intelligence
  • Machine Learning
  • Research & Academia
  • Software Development
  • Startups

Recent Posts

  • AI stirs up the recipe for concrete in MIT study | MIT News
  • Download Our Free Ocean Coloring Pages
  • Hitting the bar

© 2025 https://softblissacademy.online/- All Rights Reserved

No Result
View All Result
  • Home
  • Artificial Intelligence
  • Software Development
  • Machine Learning
  • Research & Academia
  • Startups

© 2025 https://softblissacademy.online/- All Rights Reserved

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?