Today's Core Dump is brought to you by ThreatPerspective

The Hacker News

New Supply Chain Malware Operation Hits npm and PyPI Ecosystems, Targeting Millions Globally

Cybersecurity researchers have flagged a supply chain attack targeting over a dozen packages associated with GlueStack to deliver malware. The malware, introduced via a change to "lib/commonjs/index.js," allows an attacker to run shell commands, take screenshots, and upload files to infected machines, Aikido Security told The Hacker News, stating these packages collectively account for nearly 1

Published: 2025-06-08T19:17:00











© Segmentation Fault . All rights reserved.

Privacy | Terms of Use | Contact Us