I am sure you're shocked to hear about another NPM compromise.
Uncategorized
1
Posts
1
Posters
0
Views
-
I am sure you're shocked to hear about another NPM compromise.
This one was because a maintainer let their email domain expire!
Node-ipc NPM packages infected with stealer
Socket.dev has yet another NPM package compromise, in this case the node-ipc packages. Affected versions: node-ipc@9.1.6 node-ipc@9.2.3 node-ipc@12.0.1 Initial access appears to be email domain takeover from a do…
IFIN (discourse.ifin.network)
-
M mttaggart@infosec.exchange shared this topic