Article 70D41 One line of malicious npm code led to massive Postmark email heist

One line of malicious npm code led to massive Postmark email heist

by
from www.theregister.com - Articles on (#70D41)
Story ImageMCP plus open source plus typosquatting equals trouble

A fake npm package posing as Postmark's MCP (Model Context Protocol) server silently stole potentially thousands of emails a day by adding a single line of code that secretly copied outgoing messages to an attacker-controlled address....

External Content
Source RSS or Atom Feed
Feed Location http://www.theregister.co.uk/headlines.atom
Feed Title www.theregister.com - Articles
Feed Link https://www.theregister.com/
Reply 0 comments