Miasma Malware Targets npm Packages and GitHub Actions in Supply Chain Attack

Cybersecurity researchers have flagged yet another evolution of the supply chain attack linked to the Mini Shai-Hulud, Miasma, and Hades malware family that has compromised a new set of npm packages, even as it has propagated to the Go ecosystem.

“The latest activity includes malicious npm releases affecting LeoPlatform and RStreams packages, GitHub Actions workflow abuse, and a related Go

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

AI learns the “dark art” of RFIC design

AI learns the “dark art” of RFIC design Source: Hacker News

The case against JPEG XL

The case against JPEG XL Source: Hacker News

ThreatsDay: 296K IoT Botnet, 100+ Water Systems Targeted, SharePoint RCE Chain + 27 New Stories

ThreatsDay: 296K IoT Botnet, 100+ Water Systems Targeted, SharePoint RCE Chain + 27 New Stories A fake login page. A fake security scan. A fake productivity app. Apparently, pretending to