{
"$type": "site.standard.document",
"bskyPostRef": {
"cid": "bafyreibwqcpjy4syzkl5o53qjsp3rnw5dziejpkll4xzpmuc3wsrm2vkne",
"uri": "at://did:plc:ajcrkmnlj6rxdk7rltijv227/app.bsky.feed.post/3miecgzghjv62"
},
"coverImage": {
"$type": "blob",
"ref": {
"$link": "bafkreida66azshxq7dwzm4verp225loc6hvdz4ifxngmazn7kcpkyrhupi"
},
"mimeType": "image/jpeg",
"size": 47886
},
"path": "/tech-industry/cyber-security/axios-npm-package-compromised-in-supply-chain-attack-that-deployed-a-cross-platform-rat",
"publishedAt": "2026-03-31T12:13:33.000Z",
"site": "https://www.tomshardware.com",
"tags": [
"Cybersecurity",
"Tech Industry"
],
"textContent": "An attacker compromised the npm account of a lead Axios maintainer on March 30, and used it to publish two malicious versions of the widely used JavaScript HTTP client library.",
"title": "One of JavaScript's most popular libraries compromised by hackers — Axios npm package hit in supply chain attack that deployed a cross-platform RAT"
}