As cited
Copy frozen at (site build).
threat intel
Miasma: Supply Chain Attack Targeting RedHat npm Packages
A supply chain attack targets RedHat npm (Node Package Manager) packages using malware derived from Mini Shai-Hulud. Organizations using affected npm packages may have their systems compromised through malicious code injection into the dependency chain.
Why it matters: Development teams and security practitioners using RedHat npm packages need to audit dependencies immediately and apply mitigations to prevent malicious code execution in their build and runtime environments.
- Source published
- First seen by Cybersecurity Tracker