Supply-chain attack using invisible code hits GitHub and other repositories
2026-03-14T20:51:48Z•f897a86c64d94f205a13cb30630490d5e3b36d6ec34dc61d9e82894643f52e6c
AirSnitchAsusCISACastleloaderLumma-StealerNotepad++SecureBootStrykerWi-Fi-exploitcertificate-expirycredential-theftcryptocurrency-theftdYdXiOS-vulnerabilitiesknown-exploited-vulnerabilitiesmalwarenation-stateoffice-exploitpassword-manager-riskrouter-botnetsupply-chainsupply-chain-backdoorsupply-chain-compromiseunicode-homoglyphwiper
What happened
A cluster of active, high-impact incidents and trends: attackers are exploiting supply-chain mechanisms (including invisible Unicode in code and compromised updaters like Notepad++) and targeting popular projects and package ecosystems (malicious packages for dYdX). A destructive wiper has taken down Stryker's Windows environment, tens of thousands of routers (mostly Asus) are infected with resilient malware, and Russian-state actors quickly weaponized an urgent Microsoft Office flaw. CISA added multiple iOS flaws to its Known Exploited Vulnerabilities list. New technical threats include an Wi
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- arstechnica_security
- Record identifier
- f897a86c64d94f205a13cb30630490d5e3b36d6ec34dc61d9e82894643f52e6c
- Enrichment time
- 2026-03-14T20:51:48Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.