A recent compromise of the widely-used axios HTTP client library: npm supply chains can be leveraged to drop cross-platform RATs
Tomer Filiba
|
min read
A standard Kubernetes permission has been identified as a direct path to a cluster-wide RCE.
3
A massive supply-chain attack is affecting npm packages.