EN / ES / HU
cybersecurity

Preinstall to persistence: Inside the Red Hat npm Miasma credential-stealing campaign

Source: microsoft.com 1 min read

Share

Preinstall to persistence: Inside the Red Hat npm Miasma credential-stealing campaign

You are reading a summary. The full content is hosted on microsoft.com.

A large-scale npm supply chain attack compromised over 90 versions of @redhat-cloud-services packages, infecting CI/CD and developer systems. The malicious code steals credentials from GitHub, cloud platforms, and local machines, and spreads by republishing trusted packages.

Related Articles