CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

Miasma: Supply Chain Attack Targeting RedHat npm Packages

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 1269

As cited

Copy frozen at (site build).

threat intel

Miasma: Supply Chain Attack Targeting RedHat npm Packages

A supply chain attack targets RedHat npm (Node Package Manager) packages using malware derived from Mini Shai-Hulud. Organizations using affected npm packages may have their systems compromised through malicious code injection into the dependency chain.

Why it matters: Development teams and security practitioners using RedHat npm packages need to audit dependencies immediately and apply mitigations to prevent malicious code execution in their build and runtime environments.

Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary