ended6월 12일· 1 sources

Coordinated Infostealer Campaign Compromises Hundreds of AUR Packages

AUR 저장소 대규모 공격, 수백 개 패키지 정보탈취 악성코드 감염

Why it matters

This incident exposes the critical vulnerability of open-source package repositories to sophisticated supply chain attacks. The compromise of hundreds of AUR packages underscores the challenge community-driven repositories face in maintaining security across decentralized package submissions. Users installing from AUR risk direct exposure to infostealer malware that could compromise system credentials and sensitive data.

1
Sources
+0
24h
Growth
5d
Active
AURinfostealersupply chainpackage repositorymalware attack

Sources

Related Issues