North Korean WaterPlum hackers infected 30,000 devices worldwide
(bleepingcomputer.com)
1.
2.
Microsoft links Mastra AI supply chain attack to North Korean hackers
(bleepingcomputer.com)
3.
Red Hat npm packages compromised to steal developer credentials
(bleepingcomputer.com)
4.
TanStack NPM Packages Compromised
(news.ycombinator.com)
5.
Official SAP npm packages compromised to steal credentials
(bleepingcomputer.com)
6.
7.
8.
NPM flooded with malicious packages downloaded more than 86k times
(news.ycombinator.com)
9.
Malicious NPM packages fetch infostealer for Windows, Linux, macOS
(bleepingcomputer.com)
10.
NPM flooded with malicious packages downloaded more than 86,000 times
(arstechnica.com)
11.
PhantomRaven attack floods npm with credential-stealing packages
(bleepingcomputer.com)
12.
Tinycolor supply chain attack post-mortem
(news.ycombinator.com)
13.
CrowdStrike Infested With "Self-Replicating Worms"
(futurism.com)
14.
Shai-Hulud malware attack: Tinycolor and over 40 NPM packages compromised
(news.ycombinator.com)
15.
Live Updates: Shai-Hulud, the Most Dangerous NPM Breach in History
(news.ycombinator.com)
16.
Self-propagating supply chain attack hits 187 npm packages
(bleepingcomputer.com)
17.
Self-Replicating Worm Hits 180+ Software Packages
(krebsonsecurity.com)
18.
Self Propagating NPM Malware Compromises over 40 Packages
(news.ycombinator.com)
20.
21.
22.
Supply-chain attacks on open source software are getting out of hand
(arstechnica.com)
23.
Open source repositories are seeing a rash of supply-chain attacks
(arstechnica.com)
24.
North Korean XORIndex malware hidden in 67 malicious npm packages
(bleepingcomputer.com)