Supply chain blast: Top npm package backdoored to drop dirty RAT on dev machines
Posted in
業界新聞
Hijacked maintainer account let attackers slip cross-platform trojan into 100M-downloads-a-week Axios
One of npm's most widely used HTTP client libraries briefly became a malware delivery vehicle after attackers hijacked a maintainer's account and slipped a remote-access trojan (RAT) into two seemingly legitimate axios releases, in what's beingdescribedas "one of the most impactful npm supply chain attacks on record."…
https://www.aikido.dev/blog/axios-npm-compromised-maintainer-hijacked-rat
www.aikido.dev
Comments (0)