iT4iNT SERVER The popular HTTP client known as Axios has suffered a supply chain attack after two newly published versions of the npm package introduced a malicious dependency.
Versions 1.14.1 and 0.30.4 of Axios have been found to inject "plain-crypto-js" version 4.2.1 as a fake dependency.
According to StepSecurity, the two versions were published using the compromised npm credentials of the primary Axios VDS VPS Cloud
http://dlvr.it/TRnfKp
iT4iNT SERVER Pvt Ltd - Dedicated Server, VPS Server , Cloud Server - - Immense Techie Four Internat
IT4INT SERVER Pvt Ltd Affordable Secure Dynamic Cheap Dedicated Server, Cloud VPS, Web Hosting, ERP Cloud Server Solution Data Centers 99.9% up-time | Transforming Business By Professional Infra Digital Infra Company - https://it4int.com
Subscribe to:
Post Comments (Atom)
Junior Hacker Used Tailscale and OpenSSH to Keep Access After His C2 Went Offline
iT4iNT SERVER A French-speaking attacker broke into a small French automotive business, planted a keylogger, and stole banking and email cre...
-
iT4iNT SERVER A new agentic browser attack targeting Perplexity's Comet browser that's capable of turning a seemingly innocuous emai...
-
iT4iNT SERVER A human rights lawyer from Pakistan's Balochistan province received a suspicious link on WhatsApp from an unknown number, ...
-
iT4iNT SERVER The threat actor known as Silver Fox has been spotted orchestrating a false flag operation to mimic a Russian threat group in ...

No comments:
Post a Comment