Skip to main content

Tag: alibaba

4 articles

Cluttered software development workspace with laptop, tools, and Chinese characters on a desk overlooking a blurred…

Malicious npm Packages Target Alibaba Developers with Cross-Platform RAT

Researchers have uncovered a sneaky plot involving 18 malicious npm packages that deliver a cross-platform remote access trojan (RAT) to Alibaba developers, likely for industrial espionage. This targeted supply-chain operation zeroes in on Chinese-speaking environments, putting sensitive data at risk.

Analyst 207
Network-reachable server terminal in a dimly lit data center environment.

Fastjson Vulnerability Exploited in Targeted Attacks

A critical vulnerability in Fastjson, tracked as CVE-2026-16723, has been exploited in targeted attacks, with a severity score of 9.0 out of 10. Attackers are actively probing for exposed paths in Fastjson 1.x, commonly used in Spring Boot deployments.

Analyst 207
Laptop screen displays blurred health information on a subtle medical background.

UK Biobank Data Surfaces for Sale on Alibaba Amid Security Probe

UK Biobank data was mysteriously listed for sale on Alibaba, but thankfully, the listings were swiftly removed with the help of the UK and Chinese governments, and no sales were made. The sensitive data, which includes genomic information, health records, and medical imaging, had been shared with researchers but was de-identified to protect participants' identities.

Analyst 207
Laptop screen displays Alibaba webpage amidst medical items and papers.

Biobank Data Breach Exposes 500k Volunteers on Alibaba

A major data breach at UK-based Biobank has exposed the medical records of around 500,000 volunteers on the Chinese e-commerce site Alibaba, putting sensitive information at risk of being misused. The compromised dataset, described as one of the world's most comprehensive biomedical datasets, was listed for sale, sparking urgent concerns about data security.

Analyst 207