//
sign in
Post
by @danabra.mov
PostEmbed
by @danabra.mov
Record
by @jimpick.com
Record
by @atsui.org
+ new component
Post
From package to postinstall payload: Inside the Mastra npm supply chain compromise
3h
A poisoned npm package infected 140+ projects with a hidden payload. This report highlights how to detect, hunt, and defend against supply chain attacks using Microsoft Defender and actionable threat intelligence.
www.microsoft.com
From package to postinstall payload: Inside the Mastra npm supply chain compromise | Microsoft Security Blog
Rod Trent