Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
sheept
34 days ago
|
parent
|
context
|
favorite
| on:
Post Mortem: axios NPM supply chain compromise
This article[0] investigated the payload. It's a RAT, so it's capable of executing whatever shell commands it receives, instead of just stealing credentials.
[0]:
https://safedep.io/axios-npm-supply-chain-compromise/
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search:
[0]: https://safedep.io/axios-npm-supply-chain-compromise/