← Back to feed
general GBHackers

ChainDrop Publishes Initial Malware Without Stealing a Long-Lived npm Token

GBHackers •

The ChainDrop campaign has exposed a gap in modern software supply-chain defenses: malware no longer needs a durable npm publishing token or even an npm inst...

Read the full story GBHackers →

Related Coverage

general Iranian VPN-over-DNS Activity Generates 40 Billion DNS Observations During Military Conflict GBHackers · Oct 10 general DarkBlinders Hackers Use Fake Meeting App to Deploy Backdoor and Steal Government Data GBHackers · Oct 10 general Two AhsayCBS Zero-Day Vulnerabilities Actively Exploited to Take Over Backup Servers GBHackers · Oct 10