TrapDoor Supply Chain Attack Steals Developer Credentials from AI, Crypto Ecosystems
A sophisticated supply chain attack dubbed TrapDoor has compromised 34 software packages across the npm, PyPI, and Crates.io repositories, according to security reports surfacing this week. The campaign, which targets developer credentials to establish persistence, highlights critical vulnerabilities in the open-source ecosystems that underpin modern artificial intelligence and software development workflows. The Mechanics of the … Read more