Diamond Member ThaHaka 0 Posted February 23 Diamond Member Share Posted February 23 This is the hidden content, please Sign In or Sign Up Cybersecurity researchers have disclosed what they say is an active "Shai-Hulud-like" supply chain worm campaign that has leveraged a cluster of at least 19 malicious npm packages to enable credential harvesting and cryptocurrency key theft. The campaign has been codenamed SANDWORM_MODE by supply chain security company Socket. As with prior Shai-Hulud attack waves, the malicious code embedded This is the hidden content, please Sign In or Sign Up 0 Quote Link to comment https://hopzone.eu/forums/topic/301835-h4ckn3wsmalicious-npm-packages-harvest-crypto-keys-ci-secrets-and-api-tokens/ Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.