As cited
Copy frozen at (site build).
threat intel
Multiple Jscrambler Packages Impacted by Supply Chain Attack
A threat actor compromised multiple Jscrambler packages on NPM and injected malicious code designed to steal credentials across platforms. The attack represents a supply chain compromise affecting developers who downloaded the poisoned package versions.
Why it matters: Developers using affected Jscrambler versions face credential theft and potential account compromise; verify your package versions and audit for unauthorized access to development systems and secrets.
- Source published
- First seen by Cybersecurity Tracker