← Back to feed
Threat Actors & CampaignsEmerging1 sourceSep 21, 2026 · 13:30via Infosecurity Magazine

Attackers Abuse npm Trusted Publishing in GHAPPIER Campaign

Brief

CloudSEK linked GHAPPIER to a compromised npm package with valid trusted-publishing provenance

Read more on Infosecurity Magazine→