Dozens of Red Hat packages backdoored through its offical NPM channel
Anyone who has downloaded affected Red Hat packages should investigate immediately. https://arstechnica.com/security/2026/06/dozens-of-red-hat-packages-backdoored-through-its-offical-npm-channel/?utm_brand=arstechnica&utm_social-type=owned&utm_source=mastodon&utm_medium=social
Comments (1)
@arstechnica some day we'll all start treating the entire NPM package ecosystem as the active exploit vector it truly is.
Not today, tho! 🙃