News
A new digital supply chain attack has targeted popular open-source npm packages with at least two billion downloads per week. On Sept. 8, Josh Junon, a package maintainer whose account was at the ...
Qix is an open source maintainer account that was compromised by a phishing attack. This allowed attackers to infect 18 popular npm packages with malicious code. Together, these packages are ...
6don MSN
How to stay safe if you’re using MetaMask, Phantom, Trust or any crypto wallet from NPM attack
A new cyberattack has put millions of crypto users on alert after hackers slipped malicious code into NPM, the software ...
Hackers injected malicious code into nearly a dozen 20 NPM packages with billions of weekly downloads in a software supply chain attack after phishing a maintainer’s account.
NPM developer qix's account compromise potentially puts user funds at risk by compromising library dependencies used by ...
The "biggest supply chain attack" in the history of npm took place recently, affecting almost two dozen packages.
Some results have been hidden because they may be inaccessible to you
Show inaccessible results