
Loading

Loading
We use strictly necessary cookies to run this site, and analytics cookies to understand how it's used. See our Privacy Policy for details.
MALFEX, a persistent npm supply-chain campaign distributing Windows malware through eight malicious packages.
Summary
Linked to an apparent single operator active
This summary is a partial excerpt, the source's own feed cuts off here. Read the full story at It Security News for the rest.
KazaSec's take
Source code, and the third-party packages it depends on, is one of the most overlooked parts of an organization's real attack surface. A secure code review catches exactly this class of issue before it ships, not after it's already public.
Coverage details
We've archived 66 other articles touching the same topic (en) , see the full security news archive.
Relevant from KazaSec
More coverage on this topic
We help organizations find and fix the gaps before they make headlines.