Deceitful npm Package Alters Local ‘ethers’ Library to Initiate Backdoor Infiltrations
Security experts have identified two malevolent bundles on the npm archive that have been crafted to corrupt another package installed locally, further emphasizing the ongoing development of software supply chain assaults aimed at the open-source community.
The implicated packages are ethers-provider2 and ethers-providerz, with the former having been fetched 73 times so far since its initial release on
The implicated packages are ethers-provider2 and ethers-providerz, with the former having been fetched 73 times so far since its initial release on
