Microsoft Azure developers targeted by 200-plus data-stealing npm packages

A group of more than 200 malicious npm packages targeting developers who use Microsoft Azure has been removed two days after they were made available to the public. Security firm JFrog on Wednesday said that earlier this week its automated analysis system began raising the alarm about dubious uploads to the npm Registry, the most popular public source of software libraries for the JavaScript ecosystem.

Read full article on The Register

 


Date:

Categorie(s):