๐๏ธ 17 Sep: attack #Shai-Hulud / #CrowdStrike / #tinycolor
Self-replicating worm ๐ฑ started by briefly infecting tinycolor and packages by vendor CrowdStrike. Exposes code and secrets via GitHub and tries to propagate to other packages via npm tokens. Now impacts nearly 500 packages.
0
0
1
0