ChainDrop attack infects over 2,200 NPM packages after GitHub account compromise
The attack, called ChainDrop, began after hackers infected the keyv and cacheable packages.
2 min read
Cybersecurity Help is a global vulnerability intelligence provider. We monitor vulnerabilities in software from 60,000+ vendors and help customers prevent potential data breaches by addressing them proactively.
Request DemoThe attack, called ChainDrop, began after hackers infected the keyv and cacheable packages.
2 min readResearchers started with a lower-level employee's compromised email account and used the AI assistant to gather information and plan an attack.
2 min readResearchers said INC Ransomware was not the first group to abuse the flaws, but it has been the most aggressive in combining both vulnerabilities into a full attack chain.
2 min readThe campaign uses multiple malware components, including VBScript droppers, batch scripts, .NET executables, and phishing HTML pages.
2 min readCensys noted possible links between DarkSword and Coruna and the UNC6353 threat actor, which has been linked to attacks on Ukraine.
3 min read