Description
Veracode Threat Research exposed a targeted typosquatting attack on npm, where the malicious package @acitons/artifact stole GitHub tokens. Learn how this supply chain failure threatened the GitHub organisation's code.
Basic Information
ID
HACKREAD:A0A16B09151687CEBBBD210D40DB4C10
Published
Nov 11, 2025 at 11:45