emre aslan
@ewreaslan
Offensive Security Engineer at @adeosecurity Red Team.
ID: 883710427758284803
https://linkedin.com/in/emreaslany 08-07-2017 15:32:39
1,1K Tweet
1,1K Followers
245 Following
🚨 CRITICAL: Active supply chain attack on axios -- one of npm's most depended-on packages. The latest [email protected] now pulls in [email protected], a package that did not exist before today. This is a live compromise. This is textbook supply chain installer malware. axios