Skip to main content

🚨 42 npm packages - 84 malicious versions - Pushed in just 6 minutes 🚨

🚨 42 npm packages - 84 malicious versions - Pushed in just 6 minutes 🚨

#TanStack just dropped a detailed postmortem on a sophisticated #SupplyChain attack exposing developers and CI/CD pipelines to credential theft and malware propagation.

🔗 Read more: https://bit.ly/4utUl7s

#InfoQ #Security #npm #DevOps

Preview image for TanStack Details Sophisticated npm Supply Chain Attack That Compromised 42 Packages

TanStack Details Sophisticated npm Supply Chain Attack That Compromised 42 Packages

TanStack has released a detailed postmortem describing a sophisticated supply-chain attack that compromised 42 npm packages and published 84 malicious package versions in just six minutes, exposing developers and CI/CD systems to credential theft and malware propagation.

bit.ly
View original 0 Likes 0 Boosts

Comments (0)

No comments yet.