malicious-package
5 articles with this tag
CRITICAL
HIGH
HIGH
CRITICAL
HIGH
Why some security fixes never reach your vulnerability dashboard
AntV data visualization tool the latest to be hit by ongoing npm supply chain attacks
Open source package with 1 million monthly downloads stole user credentials
Telnyx package on PyPI compromised by TeamPCP. WAV steganography used for payload delivery
TeamPCP strikes again - telnyx popular PyPI library compromised