← nejvýznamnější zprávy · všechny zprávy

ChainDrop supply chain compromise: Anatomy of a self-propagating worm

In this article Attack chain overviewMitigation and protection guidanceIndicators of compromise (IOC)Microsoft Defender XDR detectionsAdvanced hunting queriesLearn more Microsoft Threat Intelligence identified a large-scale npm supply chain attack affecting more than 400 packages across multiple unrelated publishers, including packages associated with major enterprise software ecosystems such as keyv, flat-cache, cache-manager, and others. The malicious releases contain a Mini Shai-Hulud…

Číst originál na Microsoft Security Blog →

CZ · EN/orig

npm US

tg: varování tg: rozbor tp: malware tp: dodavatelský řetězec tp: identita