UNC1069 compromised Axios 1.14.1 and 0.30.4 via social engineering, impacting 100M weekly downloads and exposing supply ...
Google Threat Intelligence Group warns of active supply chain attack on npm’s Axios library Malicious dependency ...
The malicious releases were available for about three hours before they were removed, but the brevity of the window has done little to calm alarm because Axios is one of the most heavily used HTTP ...
A critical supply chain attack has compromised the popular JavaScript library axios, leading to developers unknowingly ...