Malicious code found in Red Hat’s npm packages (opens in new tab)
Security researchers have discovered malicious code in dozens of npm packages published under Red Hat’s name. According to researchers, the compromised packages were part of a supply chain attack in which malware was distributed via a compromised GitHub account belonging to an employee. Researchers at security firm Wiz describe this as an active ...
Read the original article