• Alerts
  • Events
  • DCR
    • Explore Cyware Products
    Alerts Events DCR
    Go to listing page

    NPM Registry Found to be Vulnerable to 'Manifest Confusion' Abuse

    • Malware and Vulnerabilities
    • June 28, 2023
    • The Register
    The npm Public Registry, a database of JavaScript packages, fails to compare npm package manifest data with the archive of files that data describes, creating an opportunity for the installation and execution of malicious files.
    Read More
    • Manifest Confusion
    • JavaScript packages
    • Package Manifest Data
    • Supply Chain Vulnerability
    • Improper Manifest Validation
    Cyware Publisher

    Publisher

    Previous

    Astrix Security, which uses ML to secure app integratio ...

    Companies to Watch

    Next

    Ukraine Cracks Down on Investment Scams, Raids Call Cen ...

    Incident Response, Learnings


    RESOURCES
    Cyber Fusion Center Guide
    EVENTS

    News and Updates, Hacker News

    Get in touch with us now!

    1-855-692-9927


    Download Cyware Social App

    Terms of Use Privacy Policy © 2023