New Attack Vector: 144k Phishing Packages Found on Open-source Repositories

Threat actors found a new attack vector spamming open-source ecosystem with packages that contain links to phishing campaigns. 144,294 phishing-related packages have been uploaded to open-source package repositories, like NPM, PyPi, and NuGet. The Magnitude of this Phishing Campaign Analysts at Checkmarx and Illustria say that all packages and associated user accounts were almost certainly […]

The post New Attack Vector: 144k Phishing Packages Found on Open-source Repositories appeared first on Heimdal Security Blog.

This article has been indexed from Heimdal Security Blog

Read the original article: