npm 공급망 공격이 400개 이상 패키지에 영향을 미쳤습니다.
이번 주, 보안 연구자들은 400개 이상의 npm 패키지에 영향을 미치는 공급망 공격을 발표했습니다. 이 공격은 Keyv와 관련된 프로젝트에도 영향을 미쳤습니다. 이는 패키지의 출처 신뢰성을 위반하는 장치로 작용하며, 사용자의 안전에 엄청난 위협이 될 수 있습니다.
An npm supply chain attack has impacted over 400 packages.
This week, security researchers disclosed a supply chain attack affecting more than 400 npm packages. The attack also impacted projects connected to Keyv. It acts as a device that undermines the trustworthiness of package provenance, posing a significant threat to user safety.