<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>NPM - malgregator</title>
    <link>https://malgregator.com/tags/npm/</link>
    <description>Recent content in NPM on malgregator</description>
    <generator>Hugo -- gohugo.io</generator>
    <language>en</language>
    <managingEditor>you@example.com</managingEditor>
    <webMaster>you@example.com</webMaster>
    <lastBuildDate>Fri, 13 Jul 2018 08:03:00 +0000</lastBuildDate>
    
        <atom:link href="https://malgregator.com/tags/npm/index.xml" rel="self" type="application/rss+xml" />
    
    <item>
      <title>InfoSec Week 28, 2018</title>
      <link>https://malgregator.com/post/week-28-2018/</link>
      <pubDate>Fri, 13 Jul 2018 08:03:00 +0000</pubDate>
      <author>you@example.com</author>
      <guid>https://malgregator.com/post/week-28-2018/</guid>
      <description>Hackers have poisoned the Arch Linux PDF reader package named “acroread” that was found in a user-provided Arch User Repository (AUR). They have put downloader malware inside.</description>
    </item><item>
      <title>InfoSec Week 24, 2018</title>
      <link>https://malgregator.com/post/week-24-2018/</link>
      <pubDate>Fri, 15 Jun 2018 11:34:00 +0000</pubDate>
      <author>you@example.com</author>
      <guid>https://malgregator.com/post/week-24-2018/</guid>
      <description>Yet another high severity attack against the Intel CPUs. Unpatched systems can leak SIMD, FP register state between privilege levels. These registers are used for private keys nowadays.   The cost of a patch is more expensive context switches because the fix has to unload and reload all SIMD, FP state.</description>
    </item><item>
      <title>InfoSec Week 2, 2018</title>
      <link>https://malgregator.com/post/week-02-2018/</link>
      <pubDate>Thu, 11 Jan 2018 22:11:00 +0000</pubDate>
      <author>you@example.com</author>
      <guid>https://malgregator.com/post/week-02-2018/</guid>
      <description>New research has found a flaw in a group messaging part of a Signal protocol used by Signal, WhatsApp and Threema. It’s hardly exploitable, but the server (attacker) could be, in some theoretical scenario, able to silently join an encrypted group chat.</description>
    </item><item>
      <title>InfoSec Week 48, 2017</title>
      <link>https://malgregator.com/post/week-48-2017/</link>
      <pubDate>Thu, 07 Dec 2017 22:37:00 +0000</pubDate>
      <author>you@example.com</author>
      <guid>https://malgregator.com/post/week-48-2017/</guid>
      <description>The German Interior Minister is preparing a law that will force device manufacturers to include backdoors within their products that law enforcement agencies could use at their discretion for legal investigations.</description>
    </item>
  </channel>
</rss>