Tokeo 并未受到针对 NPM 软体包的主动攻击的影响 Tokers,注意安全!
本文为机器翻译
展示原文

Charles Guillemet
@P3b7_
09-09
🚨 There’s a large-scale supply chain attack in progress: the NPM account of a reputable developer has been compromised. The affected packages have already been downloaded over 1 billion times, meaning the entire JavaScript ecosystem may be at risk.
The malicious payload works
来自推特
免责声明:以上内容仅为作者观点,不代表Followin的任何立场,不构成与Followin相关的任何投资建议。
喜欢
收藏
评论
分享




