#
DIFF.BLOG
New
Following
Discover
Jobs
More
Top Writers
Suggest a blog
Upvotes plugin
Report bug
Contact
About
Sign up
The home for great developer writing.
We surface the best developer writing from thousands of independent blogs, updated daily.
Join Diff.blog
TOPICS
security: Developer-targeting campaign using malicious Next.js repositories
·
Sujith Quintelier
·
Feb. 24, 2026, 7:35 p.m.
Cybersecurity
nextjs
Remote Code Execution
Developer Safety
Summary
Microsoft has reported a concerning developer-targeting campaign leveraging malicious Next.js repositories for covert remote code execution and command-and-control activities through standard build workflows.
Read full post on quintelier.dev →
MORE POSTS LIKE THIS
Supply Chain Storm: Over 700 Laravel Lang Versions Poisoned with Malicious RCE Backdoor
Securityonline ·
May 23, 2026
Cyber Security
malware
security: Impersonating IT support: how threat actors turn a remote session into enterprise-wide access
Sujith Quintelier ·
Sep 3, 2026
Cybersecurity
IT security
I'm Worried About a Prompt Injection Worm
Daniel Miessler ·
Aug 19, 2026
AI Security
prompt injection
UAT-10147 deploys SPECTRE: A cross-platform implant with Linux rootkit and BYOVD capabilities
Blog Talosintelligence ·
Aug 20, 2026
AI
Threat Spotlight
Investigating three real-world incidents in our cybersecurity evaluations
simonw ·
Jul 31, 2026
Python
AI
The Good, the Bad and the Ugly in Cybersecurity – Week 29
Sentinelone ·
Jul 17, 2026
Company
Weekly
Discover more posts →
AUTHOR
Sponsored
Zulip
Organized team chat for people who take work seriously. Topic-based threading keeps conversations focused.
Try Zulip
Become a sponsor →
RECENT POSTS FROM THE AUTHOR
Choose how you want to continue.
Continue with GitHub
Continue with Google