{
"$type": "site.standard.document",
"bskyPostRef": {
"cid": "bafyreibl6ijlr7xceffoaahhmrbil3k4gsd46vcixk3gphzsfltpc2g2ku",
"uri": "at://did:plc:6wtxqaikjf62unmnajbfbq5v/app.bsky.feed.post/3mmuzttze3io2"
},
"coverImage": {
"$type": "blob",
"ref": {
"$link": "bafkreidwx3risxhf4nb3p3cyj7x2xjb747m7j7fjrk6ov7l44xnu2ru6ri"
},
"mimeType": "image/webp",
"size": 33478
},
"path": "/laravel-lang-packages-hit-by-supply-chain-attack-that-stole-developer-secrets/",
"publishedAt": "2026-05-27T15:33:00.000Z",
"site": "https://vpncentral.com",
"tags": [
"News",
"Laravel-Lang packages hit by supply chain attack that stole developer secrets",
"VPN Central"
],
"textContent": "A supply chain attack against Laravel-Lang packages exposed developers to credential-stealing malware after attackers abused GitHub tags and Composer’s autoload system. Security researchers say the incident affected hundreds of historical package versions and created a risk for Laravel projects that installed or updated the affected dependencies during the compromise window. The attack was detected on […]\n\nThe post Laravel-Lang packages hit by supply chain attack that stole developer secrets appeared first on VPN Central.",
"title": "Laravel-Lang packages hit by supply chain attack that stole developer secrets"
}