Auto giant Stellantis investigating data breach following ‘unauthorized access’
The Record reports: The multinational carmaker Stellantis said unauthorized access to a third-party provider’s platform resulted in the potential exposure of customer data. In a statement released on Sunday, the company said the incident affected a provider supporting the North American branch’s customer service. “The personal information involved was limited to contact information,” Stellantis said. “Importantly, the […]

Self-Replicating Worm Hits 180+ Software Packages
KrebsOnSecurity.com reports: At least 187 code packages made available through the JavaScript repository NPM have been infected with a self-replicating worm that steals credentials from developers and publishes those secrets on GitHub, experts warn. The malware, which briefly infected multiple code packages from the security vendor CrowdStrike, steals and publishes even more credentials every time an infected package is installed. […]