Security
Headlines
HeadlinesLatestCVEs

Headline

New Supply Chain Malware Operation Hits npm and PyPI Ecosystems, Targeting Millions Globally

Cybersecurity researchers have flagged a supply chain attack targeting over a dozen packages associated with GlueStack to deliver malware. The malware, introduced via a change to “lib/commonjs/index.js,” allows an attacker to run shell commands, take screenshots, and upload files to infected machines, Aikido Security told The Hacker News, stating these packages collectively account for nearly 1

The Hacker News
#mac#nodejs#js#The Hacker News

The Hacker News: Latest News

New Supply Chain Malware Operation Hits npm and PyPI Ecosystems, Targeting Millions Globally