home.social

#maliciousnpmpackages — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #maliciousnpmpackages, aggregated by home.social.

  1. Shai Hulud Campaign Targets Developers with Malicious npm Packages

    Malicious actors have unleashed a barrage of 84 tainted versions of popular software packages, cleverly disguising them with legitimate credentials to deceive developers. The Shai Hulud campaign, linked to the TeamPCP threat group, has been wreaking havoc on the software supply chain since September.

    osintsights.com/shai-hulud-cam

    #ShaiHulud #Teampcp #MaliciousNpmPackages #SupplyChain #EmergingThreats