Grayhat pollutes npm, PyPI with thousands of fake supply chain dependencies 2 min read Share this:TweetMore Click to print (Opens in new window) Print Click to share on Reddit (Opens in new window) Reddit Click to share on Telegram (Opens in new window) Telegram Click to share on WhatsApp (Opens in new window) WhatsApp Click to email a link to a friend (Opens in new window) Email News Security Grayhat pollutes npm, PyPI with thousands of fake supply chain dependencies Ax Sharma March 4, 2021 A gray hat hacker has published over 7,000 dependency confusion packages to npm and PyPI repositories, and continues to post thousands more, in real time.... Read More
Share this: