Get the latest tech news

Security Researchers Spot 150,000 Function-less npm Packages in Automated 'Token Farming' Scheme


An anonymous reader shared this report from The Register: Yet another supply chain attack has hit the npm registry in what Amazon describes as "one of the largest package flooding incidents in open source registry history" — but with a twist. Instead of injecting credential-stealing code or ...

None

Get the Android app

Or read this on Slashdot

Read more on:

Photo of Function

Function

Photo of security researchers

security researchers

Photo of scheme

scheme

Related news:

News photo

Crims poison 150K+ npm packages with token-farming malware

News photo

GNU C Library Adds Linux "mseal" Function For Memory Sealing

News photo

Hashtable vs. A-list in Scheme, which to choose?