#supply-chain-worm

[ follow ]
Information security
fromThe Hacker News
7 hours ago

Malicious npm Packages Harvest Crypto Keys, CI Secrets, and API Tokens

SANDWORM_MODE supply-chain worm uses malicious npm packages to harvest credentials and crypto keys, propagate via stolen identities, and target AI coding assistants.
[ Load more ]