ended6월 12일· 1 sources
Coordinated Infostealer Campaign Compromises Hundreds of AUR Packages
AUR 저장소 대규모 공격, 수백 개 패키지 정보탈취 악성코드 감염
Why it matters
This incident exposes the critical vulnerability of open-source package repositories to sophisticated supply chain attacks. The compromise of hundreds of AUR packages underscores the challenge community-driven repositories face in maintaining security across decentralized package submissions. Users installing from AUR risk direct exposure to infostealer malware that could compromise system credentials and sensitive data.
1
Sources
+0
24h
—
Growth
5d
Active
AURinfostealersupply chainpackage repositorymalware attack