#cicd-pipeline-compromise

[ follow ]
Information security
fromInfoWorld
6 hours ago

Mistral AI SDK, TanStack Router hit in npm software supply chain attack

Automated Mini Shai-Hulud worm attacks rapidly spread through package ecosystems on May 11 by hijacking release pipelines via pull_request_target and maintainer misconfigurations.
[ Load more ]