THEMETASEC

Cybersecurity News, Aggregated

Tensorlake npm package compromised in supply chain attack

SC Media · 1 hour ago Breach

The npm package "tensorlake," a TypeScript software development kit for Tensorlake applications, was compromised as part of a ChainDrop / Shai-Hulud supply chain attack, based on information published by The Hacker News.

Read full story at SC Media →