Diamond Member ThaHaka 0 Posted May 19 Diamond Member Share Posted May 19 This is the hidden content, please Sign In or Sign Up Cybersecurity researchers have discovered a fresh software supply chain attack campaign that has compromised various npm packages associated with the @antv ecosystem as part of the ongoing Mini Shai-Hulud attack wave. "The attack affects packages tied to the npm maintainer account atool, including echarts-for-react, a widely used React wrapper for Apache ECharts with roughly 1.1 million weekly This is the hidden content, please Sign In or Sign Up 0 Quote Link to comment https://hopzone.eu/forums/topic/313710-h4ckn3wsmini-shai-hulud-pushes-malicious-antv-npm-packages-via-compromised-maintainer-account/ Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.