f/code

Axios npm Package Compromised: Supply Chain Attack Delivers Cross-Platform RAT | Snyk

Axios npm Package Compromised: Supply Chain Attack Delivers Cross-Platform RAT | Snyk

Meta description: Malicious versions of the Axios npm package (1.14.1 and 0.30.4) were published via a compromised maintainer account, injecting a hidden dependency that deploys a cross-platform remote access trojan. Here's what happened, who's affected, and how to check your exposure.

snyk.io View

Comments

No comments yet. Log in to start the conversation.

f/code

Code and anything code related

Created Dec 12, 2025

2
Members

Moderators
u/rob u/admin