The attackers swapped the account's email address for an anonymous ProtonMail inbox and pushed the infected packages manually ...
Active exploits, nation-state campaigns, fresh arrests, and critical CVEs — this week's cybersecurity recap has it all.