The Axios JavaScript NPM package was recently compromised, representing one of the highest impact supply chain attacks against the open source development ecosystem in recent months. Axios is the most ...
A suspected North Korean hacker has hijacked and modified a popular open source software development tool to deliver malware that could put millions of developers at risk of being compromised. On ...
Socket found a compromised Injective npm package stealing wallet keys amid rising crypto supply chain attacks.
Cryptopolitan on MSN
Attackers deliver infostealer to Polymarket trading bot users, DeFi devs through npm packages
Hackers created a fake trading bot for Polymarket’s prediction markets on GitHub. The bot was used to spread malware that steals credentials like wallet keys and browser passwords. 30 malicious ...
The widely used Axios HTTP client library, a JavaScript component used by developers, was recently hacked to distribute malware via a compromised account. Attackers exploited a hijacked account on npm ...
The attack, designed to cover the hacker’s tracks, was one of the 'most operationally sophisticated supply chain attacks' ever documented against a large NPM, according to the StepSecurity analysis. — ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results