new-supply-chain-malware-operation-hits-npm-and-pypi-ecosystems,-targeting-millions-globally

Cybersecurity analysts have identified a supply chain breach aimed at more than a dozen packages linked to GlueStack for the purpose of deploying malware. The malicious software, introduced through modifications to “lib/commonjs/index.js,” permits an intruder to execute shell commands, capture screenshots, and transfer files to compromised systems, Aikido Security informed The Hacker News, noting that these packages together comprise almost 1


Leave a Reply

Your email address will not be published. Required fields are marked *

Share This