Poisoned Ruby Gems and Go Modules Exploit CI Pipelines for Credential Theft

A new software supply chain attack campaign has been observed using sleeper packages as a conduit to subsequently push malicious payloads that enabled credential theft,… Read MoreThe Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *