# command and control

Published articles for command and control.

This is one page of public article previews, not the complete archive. Follow Next page to continue. Summaries are not the original full articles.

## Infoblox reports malicious infrastructure beneath illegal gambling sites

DevFeed: [Infoblox reports malicious infrastructure beneath illegal gambling sites](<https://devfeed.tech/articles/low-quality-casino-sites-conceal-highly-dangerous-threat-actors-26962.md>)

Original publisher: [Read original article](<https://www.theregister.com/security/2026/09/15/low-quality-casino-sites-conceal-highly-dangerous-threat-actors/5296652>)

Author: Thomas Claburn

Published: 2026-09-15T19:38:58Z

Content type: news

Language: en

Sources: [www.theregister.com - Articles](<https://devfeed.tech/sources/www-theregister-com-articles.md>)

Topics: [Security](<https://devfeed.tech/topics/security.md>), [Threat Research](<https://devfeed.tech/topics/threat-research.md>)

Tags: [command-and-control](<https://devfeed.tech/tags/command-and-control.md>), [cybersecurity](<https://devfeed.tech/tags/cybersecurity.md>), [infoblox](<https://devfeed.tech/tags/infoblox.md>), [infosec](<https://devfeed.tech/tags/infosec.md>), [malware](<https://devfeed.tech/tags/malware.md>), [online-gambling](<https://devfeed.tech/tags/online-gambling.md>), [security](<https://devfeed.tech/tags/security.md>)

### AI overview

Infoblox reports that malicious infrastructure is operating beneath illegal gambling sites and is linked to threat actors.

### Source excerpt

Security firm Infoblox shines light on malicious infrastructure lurking beneath illegal gambling sites

## @mastra npm scope takeover: 143 packages backdoored via compromised contributor account

DevFeed: [@mastra npm scope takeover: 143 packages backdoored via compromised contributor account](<https://devfeed.tech/articles/mastra-npm-scope-takeover-143-packages-backdoored-via-compromised-contributor-account-13149.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/mastra-npm-scope-takeover-143-packages-backdoored-via-compromised-contributor-account>)

Published: 2026-06-17T00:00:00Z

Content type: article

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [npm](<https://devfeed.tech/topics/npm.md>), [Malware](<https://devfeed.tech/topics/malware.md>), [Remote Access Trojan](<https://devfeed.tech/topics/remote-access-trojan.md>), [Cryptocurrency](<https://devfeed.tech/topics/cryptocurrency.md>), [C2](<https://devfeed.tech/topics/c2.md>)

Tags: [c2](<https://devfeed.tech/tags/c2.md>), [chainguard-libraries](<https://devfeed.tech/tags/chainguard-libraries.md>), [chainguard-packages](<https://devfeed.tech/tags/chainguard-packages.md>), [command-and-control](<https://devfeed.tech/tags/command-and-control.md>), [crypto](<https://devfeed.tech/tags/crypto.md>), [malware](<https://devfeed.tech/tags/malware.md>), [mastra](<https://devfeed.tech/tags/mastra.md>), [npm](<https://devfeed.tech/tags/npm.md>), [npm-takeover](<https://devfeed.tech/tags/npm-takeover.md>), [packages](<https://devfeed.tech/tags/packages.md>), [provenance](<https://devfeed.tech/tags/provenance.md>), [remote-access](<https://devfeed.tech/tags/remote-access.md>), [remote-access-trojan](<https://devfeed.tech/tags/remote-access-trojan.md>), [secure-packages](<https://devfeed.tech/tags/secure-packages.md>), [software-packages](<https://devfeed.tech/tags/software-packages.md>), [supply-chain](<https://devfeed.tech/tags/supply-chain.md>), [tls](<https://devfeed.tech/tags/tls.md>)

### AI overview

The article reports that an attacker used a compromised former contributor account to republish all 143 packages in the @mastra npm scope on June 17, 2026. The malicious versions could disable TLS verification, download a cryptocurrency wallet stealer and remote access trojan, and establish command-and-control access. It recommends auditing dependency trees and lockfiles and rotating credentials on affected hosts.

### Source excerpt

A supply chain attack compromised all 143 @mastra packages. Chainguard customers stayed protected through malware blocking and source-built libraries.

## Why We Need to Stop Measuring (Developer) Productivity -- Part 1

DevFeed: [Why We Need to Stop Measuring (Developer) Productivity -- Part 1](<https://devfeed.tech/articles/why-we-need-to-stop-measuring-developer-productivity-part-1-39960.md>)

Original publisher: [Read original article](<https://mende.io/blog/why-we-need-to-stop-measuring-developer-productivity-part-1/>)

Author: tobi@techunicorn.builders (Tobias Mende)

Published: 2023-09-16T04:00:00Z

Content type: opinion

Language: en

Sources: [Tobias Mende](<https://devfeed.tech/sources/tobias-mende.md>)

Topics: [code productivity](<https://devfeed.tech/topics/code-productivity.md>), [developer-productivity](<https://devfeed.tech/topics/developer-productivity.md>)

Tags: [collaboration](<https://devfeed.tech/tags/collaboration.md>), [command-and-control](<https://devfeed.tech/tags/command-and-control.md>), [communication](<https://devfeed.tech/tags/communication.md>), [culture-developer-productivity-leadership-metrics-engineering-excellence](<https://devfeed.tech/tags/culture-developer-productivity-leadership-metrics-engineering-excellence.md>), [developer](<https://devfeed.tech/tags/developer.md>), [developer-productivity](<https://devfeed.tech/tags/developer-productivity.md>), [leadership](<https://devfeed.tech/tags/leadership.md>), [measuring](<https://devfeed.tech/tags/measuring.md>), [productivity](<https://devfeed.tech/tags/productivity.md>), [trust](<https://devfeed.tech/tags/trust.md>)

### AI overview

This opinion argues that productivity metrics are difficult and potentially harmful when used as targets, especially under command-and-control leadership. It advocates leadership based more on trust, communication, and collaboration, and introduces concerns about measuring sales and engineering productivity.

### Source excerpt

Why We Need to Stop Measuring (Developer) Productivity -- Part 1 Leaders are obsessed with productivity metrics. This is at least true for leaders who learned to lead in the last century. The ones that follow a command-and-control or carrots-and-sticks leadership approach. They need to measure each department individually to make the right decisions top-down.