Attack on axios software developer tool threatens widespread compromises

Stiinta si Tehnologie

A hacker briefly delivered malware this week through a popular open-source project for software developers that has an estimated 100 million weekly downloads, raising the possibility of compromises spreading widely through a supply-chain attack. Axios is a JavaScript client library used in web requests. The unknown attacker hijacked the npm account — npm being a package manager for JavaScript — of the lead axios maintainer, and then published malicious versions of axios with remote access

Attack on axios software developer tool threatens widespread compromises https://www.cyberscoop.com - 31.03.2026 19:28

din zilele anterioare

Attack on axios software developer tool threatens widespread compromises https://www.cyberscoop.com - 31.03.2026 19:28