Loading...
SlowMist has issued a security alert and detected an npm supply chain attack targeting @ redhat cloud services, affecting over 300 GitHub repositories and 31+software packages, with a weekly download volume of approximately 116000. The attack method is similar to the "Shai Hulud" npm attack, which may lead to the leakage of sensitive information such as cloud credentials and SSH keys. Suggest developers remove affected package versions, audit workflows, and rotate relevant keys.