Rust Supply Chain Attack Tied to North Korea
Wiz links a crates.io compromise to Sapphire Sleet, warning of broad developer exposure.
5 results for “supply chain attack”
Wiz links a crates.io compromise to Sapphire Sleet, warning of broad developer exposure.
A Ceva Logistics data breach affecting European clients shows how supply chain attacks ripple outward.
A campaign dubbed FakeGit uses 7,600 fake GitHub repositories to trick AI agents into installing the SmartLoader malware family.
A sophisticated supply chain attack used legitimate GitHub pipelines to push malicious code via the AsyncAPI npm namespace.
A widely used extension for developers and testers was found harboring spyware that sent user traffic data to remote servers.