home.social

#packagecompromise — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #packagecompromise, aggregated by home.social.

fetched live
  1. SAP npm Packages Compromised in Supply-Chain Attack

    Security researchers have uncovered a supply-chain attack that compromised four official SAP npm packages, allowing attackers to extract sensitive secrets from CI runner memory. The affected packages, which support SAP's Cloud Applications, have been deprecated on NPM and users are urged to update to secure versions.

    osintsights.com/sap-npm-packag

    #SupplyChain #Sap #Npm #PackageCompromise #EmergingThreats