cybersecurity
Preinstall to persistence: Inside the Red Hat npm Miasma credential-stealing campaign
Source:
microsoft.com 1 min read
Share
You are reading a summary. The full content is hosted on microsoft.com.
A large-scale npm supply chain attack compromised over 90 versions of @redhat-cloud-services packages, infecting CI/CD and developer systems. The malicious code steals credentials from GitHub, cloud platforms, and local machines, and spreads by republishing trusted packages.
Read the full article on the original website
External link to microsoft.com