#javascript-ecosystem-security

[ follow ]
Node JS
fromInfoWorld
1 week ago

AntV data visualization tool the latest to be hit by ongoing npm supply chain attacks

A compromised npm account enabled rapid publication of hundreds of malicious package versions, infecting many AntV namespace packages and spreading via a worm.
[ Load more ]