Author Topic: Go Supply Chain Attack  (Read 125 times)

0 Members and 1 Guest are viewing this topic.

Offline SiliconWizardTopic starter

  • Super Contributor
  • ***
  • Posts: 16129
  • Country: fr
Go Supply Chain Attack
« on: February 11, 2025, 07:56:47 am »
Socket researchers have discovered a malicious typosquat package in the Go ecosystem, impersonating the widely used BoltDB database module (github.com/boltdb/bolt), a tool trusted by many organizations including Shopify and Heroku.

https://socket.dev/blog/malicious-package-exploits-go-module-proxy-caching-for-persistence

 
The following users thanked this post: I wanted a rude username


Share me

Digg  Facebook  SlashDot  Delicious  Technorati  Twitter  Google  Yahoo
Smf