红帽官方NPM账户遭入侵,恶意蠕虫窃取敏感凭证

AI导读

研究人员表示,红帽官方NPM账户遭入侵,被用于推送恶意蠕虫病毒。该病毒可在机器间传播,窃取敏感凭证以盗取更多机密数据。此次供应链攻击始于周一,目前仍处于活跃状态。

AI Prism 智棱 - AI安全 分类封面图
Official Red Hat NPM accounts have been compromised and used to push a malicious worm that spreads from machine to machine, where it pilfers sensitive credentials in hopes of stealing yet more confidential data, researchers said. The supply-chain attack began Monday and remained active at the time this post went live, according to researchers at security firm Aikido. It’s the result of the threat actor responsible for the hack taking control of @redhat-cloud-services, a legitimate channel in the npm repository that’s reserved for official Red Hat packages. As such, the channel is widely trusted by developers who rely on Red Hat cloud services. The vicious cycle of today’s supply-chain attacks It’s unclear precisely how the threat actor took control of the namespace, but it almost certainly involved the compromise of credentials required to access it, possibly through a previous supply-chain attack. More than 30 packages seem to be affected.Read full article Comments

内容声明

本文内容基于公开市场信息与媒体报道进行整理,部分观点来自社区讨论。本内容含AI创作元素,如涉及事实性问题,欢迎通过 xurj005@163.com 与我们指正,我们将及时核实并更新。