Tensorlake npm Package Compromised to Deliver Shai-Hulud Credential-Stealing Worm
Malicious tensorlake npm version 0.5.144 contained a Shai-Hulud worm that harvests credentials and can republish compromised packages.
Advertisement
More like this
Researchers uncover new DarkSword spyware variant affecting unpatched iPhones
9 to 5 Mac
FBI Says China-Linked Hackers Ran Portal Giving Third Parties Access to Stolen Emails
The Hacker News
ThreatsDay: Ransomware Affiliate Betrayal, WhatsApp RAT, Exposed Hacker Tools and 12 More Stories
The Hacker News