Skip to content
AI 인텔리전스Aug 5, 2026AI 인텔리전스
기사

An attacker compromised the GitHub account of the maintainer of the keyv npm library, releasing poisoned versions that carried a...

Credential-stealing worm. The supply chain attack affected millions of weekly downloads, highlighting vulnerabilities in open-source dependencies.

Data Cube AI 편집팀출처: VentureBeat
01

출처 브리프

An attacker compromised the GitHub account of the maintainer of the keyv npm library, releasing poisoned versions that carried a credential-stealing worm. The supply chain attack affected millions of weekly downloads, highlighting vulnerabilities in open-source dependencies.