← Back to feed
general GBHackers

Malicious npm Package Steals GitHub, Cloud, and CI/CD Secrets and Spreads to Other Packages

GBHackers GitHub

A supply-chain compromise affecting the popular npm package @7nohe/openapi-react-query-codegen is exposing developer workstations and CI/CD runners to a cred...

Read the full story GBHackers →

Related Coverage

general BragJack Attack Hijacks AI Assistants in 5 Popular Browsers With Zero Clicks GBHackers · Sep 21 general Product showcase: Helmit alerts parents when online conversations show signs of trouble Help Net Security · Sep 21 general Hackers Exploit TanStack Supply Chain Attack to Steal 170 Private CrowdSec Repositories GBHackers · Sep 21