论坛首页 漏洞分析研究区 阅读主题

Axios Front-End Library npm Supply Chain Poisoning Alert

9 浏览 0 回复
#1 楼主 2026-04-16 13:39:03
Overview On March 31, NSFOCUS CERT detected that the npm repository of the HTTP client library Axios was poisoned by the supply chain. The attacker bypassed the normal GitHub Actions CI/CD pipeline of the project, changed the account email address of the axios maintainer to an anonymous ProtonMail address, and manually released a malicious version […]
The post Axios Front-End Library npm Supply Chain Poisoning Alert appeared first on NSFOCUS, Inc., a global network and cyber security leader, protects enterprises and carriers from advanced cyber attacks..

---
来源: NSFOCUS
原文链接: https://nsfocusglobal.com/axios-front-end-library-npm-supply-chain-poisoning-alert/

暂无回复,快来抢沙发吧!

请登录后参与讨论

立即登录 注册账号