Discussion

IronWorm and New Miasma Worm Variant Hit npm in Supply Chain Attacks

Started by The Hacker News · 05 Jun 2026 22:13 · 18 Views · 0 Replies
Thread Starter #0
Multiple software supply chain attacks have hit the npm ecosystem, with threat actors using both malicious and poisoned versions of over 50 legitimate packages to distribute a Rust-based information stealer and a self-spreading worm, respectively. According to JFrog, the information stealer "scrapes every secret it can find on a developer's machine, hides behind an eBPF kernel rootkit, and

Okumaya devam et...

You must be logged in to reply.

0 quotes selected