Security Insights
Latest threat analysis, industry news, and security best practices from our expert team.
UNC1069 Axios npm Compromise: Supply Chain Detection and Defense
UNC1069 Axios npm Compromise: Supply Chain Detection and Defense Introduction The open-source ecosystem is currently facing a critical secur...
Axios npm Supply Chain Attack (UNC1069): Detecting WAVESHAPER.V2 and Remediation for Versions 1.14.1/0.30.4
On March 31, the open-source ecosystem suffered a significant shock when the widely used axios npm package—boasting over 100 million weekly ...
Axios npm Supply Chain Attack: Detection and Removal of Cross-Platform RAT (v1.14.1 & v0.30.4)
Axios npm Supply Chain Attack: Detection and Removal of Cross-Platform RAT (v1.14.1 & v0.30.4) Introduction The Axios npm package, a ubiquit...
Axios NPM Supply Chain Compromise: Detecting Industrialized Social Engineering and Malicious Packages
Introduction The recent attack on the axios NPM package is a wake-up call for the software development lifecycle. Threat actors have moved b...
How to Defend Against Malicious npm Packages Targeting Redis and PostgreSQL
How to Defend Against Malicious npm Packages Targeting Redis and PostgreSQL Introduction In a recent supply chain attack, cybersecurity rese...
Defending Against UNC1069: Strategies to Mitigate npm Supply Chain Attacks
In a stark reminder of the evolving threat landscape, the maintainer of the popular Axios npm package recently confirmed a supply chain comp...
Critical Supply Chain Attack on Axios NPM: Detection and Incident Response Guide
Critical Supply Chain Attack on Axios NPM: Detection and Incident Response Guide Introduction In a disturbing development for the JavaScript...
Defending Against the Axios npm Supply Chain Attack: Detection and Remediation
Defending Against the Axios npm Supply Chain Attack: Detection and Remediation\n\n Introduction\n\nOn March 31, a sophisticated supply chain...
How to Defend Against the Axios npm Supply Chain Attack by UNC1069
How to Defend Against the Axios npm Supply Chain Attack by UNC1069 Introduction Software supply chains have become the primary attack vector...