09 Juni SeedSweep: Ten Crypto-Themed npm Packages That Only Run When No One Is Watching
Uncover the details of The 24712-pl Campaign and the zero-dependency packages exploited during a security incident....
Uncover the details of The 24712-pl Campaign and the zero-dependency packages exploited during a security incident....
Uncover the details of The 24712-pl Campaign and the zero-dependency packages exploited during a security incident....
Uncover the details of The 24712-pl Campaign and the zero-dependency packages exploited during a security incident....
Uncover the details of The 24712-pl Campaign and the zero-dependency packages exploited during a security incident....
Uncover the details of The 24712-pl Campaign and the zero-dependency packages exploited during a security incident....
Uncover the details of The 24712-pl Campaign and the zero-dependency packages exploited during a security incident....
Uncover the details of The 24712-pl Campaign and the zero-dependency packages exploited during a security incident....
Uncover the details of The 24712-pl Campaign and the zero-dependency packages exploited during a security incident....
An npm dependency confusion attack used eight malicious packages to fingerprint hosts and send RCE telemetry to Telegram....
A npm typosquatting attack used six malicious EVM/DeFi packages to steal developer keys, wallets, secrets, and .env files....
Die Malware FauxCode Claude Code npm nutzte gefälschte CLI-Pakete, um API-Datenverkehr mittels CA-Bundle-MITM und Basis-URL-Hijacking abzufangen.
DevTap nutzte bei einem npm-Typosquatting-Angriff sechs bösartige Pakete, um Entwickler-Workstations auszuspionieren und das npm-Vertrauen zu missbrauchen.