Supply chain poisoning has even involved AI developers, with 34 packages and 384 versions. The persistence methods make my SSH keys tighten up; I have to reinstall the CI environment.

View Original
BlockBeatNews
SlowMist: Detected cross-registry supply chain attack targeting crypto and AI developers
MistEye Discloses Cross-Registry Supply Chain Attack, with Attackers Publishing 34+ Malicious Packages and 384+ Versions on npm, PyPI, and crates.io, Targeting Cryptocurrency, DeFi, Solana, Sui/Move, and AI Developers, Potentially Stealing Wallets, SSH/Cloud Credentials, Tokens, Environment Variables, etc., and Attempting Persistence via Hooks, Cron, systemd, SSH, and More.
It is recommended to immediately remove affected packages, isolate systems, rotate credentials, rebuild CI and development environments from clean images, and review relevant logs.
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pinned