
Hackers Abuse GitHub Actions to Backdoor AsyncAPI npm Packages With Miasma RAT
A supply chain attack has pushed Miasma malware into trusted AsyncAPI npm packages, putting developer systems and automated build environments at risk. Attackers used a compromised release process to publish malicious code through the project’s legitimate npm namespace. The affected packages had a combined reach of about 2.9 million weekly downloads, although download figures do […]
The post Hackers Abuse GitHub Actions to Backdoor AsyncAPI npm Packages With Miasma RAT appeared first on Cyber Security News.