Get the latest tech news

GitLab discovers widespread NPM supply chain attack


Malware driving attack includes "dead man's switch" that can harm user data.

None

Get the Android app

Or read this on Hacker News

Read more on:

Photo of GitLab

GitLab

Photo of npm

npm

Related news:

News photo

SHA1-Hulud the Second Comming – Postman, Zapier, PostHog All Compromised via NPM

News photo

NPM flooded with malicious packages downloaded more than 86,000 times

News photo

Cybercrooks breach Red Hat's private GitLab repos - what we know about affected customers