首页 时政热点 科技头条 智能AI 安全攻防 数码硬件 开发者生态 汽车 游戏 社会热点 开源推荐 医疗健康 归档 标签 关于

Mini Shai-Hulud 蠕虫危害 TanStack、Mistral AI、Guardrails AI 及更多软件包

摘要

TeamPCP, the threat actor behind the recent supply chain attack spree, has been linked to the compromise of the npm and PyPI packages from TanStack, UiPath, Mistral AI, OpenSearch, and Guardrails AI a

the been npm and packages
2026-05-12 1 阅读 约1分钟阅读 info@thehackernews.com (The Hacker News)
分享:
字号:
TeamPCP 是最近供应链攻击狂潮背后的威胁参与者,它与 TanStack、UiPath、Mistral AI、OpenSearch 和 Guardrails AI 的 npm 和 PyPI 软件包的泄露有关,这是新的 Mini Shai-Hulud 活动的一部分。受影响的 npm 包已被修改为包含一个混淆的 JavaScript 文件(“router_init.js”),该文件旨在分析执行情况
这篇文章对您有帮助吗?

订阅66必读

每日精选科技资讯,直达你的邮箱