According to the MistTrack Security Team, they have detected an active npm supply chain attack targeting the redhat-cloud-services package, affecting over 31 packages (with approximately 116k weekly downloads), resulting in the theft of credentials from more than 300 GitHub repositories. The attack is similar to the previous Shai-Hulud movement, implementing automated leaks of secrets and wallet data through the signature tag “Miasma: The Spreading Blight,” and the scope of victims is still expanding. Attackers may steal cloud credentials, SSH keys, and local wallet data. MistTrack recommends affected users immediately uninstall or downgrade related components, audit CI/CD workflows, thoroughly rotate all keys and wallet assets, and rebuild exposed machine environments.

View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pinned