Switch language한국어
Back to the list

Supply chain attacks spread... SAP, Intercom, and PyPI Lightning packages also affected

TL;DR AI

Key summary

2 min read
  1. Attackers reportedly compromised widely used developer packages from SAP, Intercom, and Lightning in a supply-chain attack.

  2. The malicious packages encrypted stolen credentials and sent them to external servers, targeting cloud and source-control secrets.

  3. Exposed data may include GitHub passwords, AWS access keys, Google Cloud credentials, and database credentials.

  4. SAP has notified customers and partners about the incident.

Read the original