External Publication
Visit Post

One of JavaScript's most popular libraries compromised by hackers — Axios npm package hit in supply chain attack that deployed a cross-platform RAT

Tom's Hardware: For The Hardcore PC Enthusiast [Unofficial] March 31, 2026
Source
An attacker compromised the npm account of a lead Axios maintainer on March 30, and used it to publish two malicious versions of the widely used JavaScript HTTP client library.

Discussion in the ATmosphere

Loading comments...