North Korean hackers published backdoored versions of the Axios NPM package using a compromised long-lived access token.
In early April 2025, security researchers confirmed that North Korean state-sponsored hackers had successfully compromised the Axios HTTP library. It is one ...
Hackers infiltrated Axios maintainers using fake Slack channels and Teams calls, then published infected packages.
A supply-chain attack backdoored versions of Axios, a popular JavaScript library that's present in many different software ...
Two CISOs dissect the Axios npm attack, revealing a self-erasing RAT, CI/CD compromise risks and why open-source software ...
The biggest story of the week is a new massive supply chain breach, which appears to be unrelated to the previous massive supply chain breaches, this time of the Axios HTTP project. Axios was ...