Source: hackread.com – Author: Deeba Ahmed. KEY SUMMARY POINTS Compromised npm Packages: On December 20, 2024, attackers used a hijacked npm token to compromise popular npm packages @rspack/core, @rspack/cli, and “vant,” injecting malicious code into their updates. Monero Miner Deployed: The malicious code, hidden in obfuscated scripts, deployed the XMRig Monero cryptocurrency miner, connecting to […]
La entrada Supply Chain Attack Hits Rspack, Vant npm Packages with Monero Miner – Source:hackread.com se publicó primero en CISO2CISO.COM & CYBER SECURITY GROUP.