Advertisement ยท 728 ร— 90
#
Hashtag
#Tinycolor
Advertisement ยท 728 ร— 90

๐Ÿ—“๏ธ 17 Sep: attack #Shai-Hulud / #CrowdStrike / #tinycolor
Self-replicating worm ๐Ÿ˜ฑ started by briefly infecting tinycolor and packages by vendor CrowdStrike. Exposes code and secrets via GitHub and tries to propagate to other packages via npm tokens. Now impacts nearly 500 packages.

0 0 1 0
Post image

Attacco supply chain npm su Tinycolor compromette 500 pacchetti: propagazione Shai-Hulud, esfiltrazione segreti, IOC e mitigazioni per team DevSecOps.

#crowdstrike #npm #payload #ShaiHulud #supplychain #Tinycolor #TruffleHog #worm
www.matricedigitale.it/2025/09/17/m...

0 0 0 0