#github-token-compromise

[ follow ]
Information security
fromDevOps.com
1 week ago

Malicious Nx Packages Used in Two Waves of Supply Chain Attack - DevOps.com

Malicious actors stole an Nx NPM token, published compromised package versions that harvest credentials and used leaked GitHub tokens to expose repositories and exfiltrate data.
[ Load more ]