AIインテリジェンスAug 5, 2026AIインテリジェンス
記事
An attacker compromised the GitHub account of the maintainer of the keyv npm library, releasing poisoned versions that carried a...
Credential-stealing worm. The supply chain attack affected millions of weekly downloads, highlighting vulnerabilities in open-source dependencies.
Data Cube AI 編集部出典: VentureBeat
01
ソース要約
An attacker compromised the GitHub account of the maintainer of the keyv npm library, releasing poisoned versions that carried a credential-stealing worm. The supply chain attack affected millions of weekly downloads, highlighting vulnerabilities in open-source dependencies.