A hacker group is poisoning open source code at an unprecedented scale
Ars Technica1620 字 (约 7 分钟)
92
The TeamPCP group has launched over 20 waves of supply chain attacks in months, compromising more than 500 distinct open-source tools—over 1,000 versions—and exposing at least 3,800 internal GitHub repositories.
入选理由:TeamPCP 在数月内发动 20 轮攻击,污染超 500 款开源工具(含多版本共超千次)。
FeaturedArticle#supply chain attack#open-source security#TeamPCP#VSCode#worm attack英文
