Checkmarx research team finds attack group “LofyGang” linked to several supply chain incidents reported this year by Sonatype, Jfrog, and Securelist.
LofyGang has been active since 2020 and is developing hack tools, poisoning the open source supply chain with malicious packages to steal and spread stolen credentials and loot in underground hacking forums
Read the full story https://bit.ly/lofygang