this post was submitted on 09 Jun 2025
41 points (100.0% liked)

Cybersecurity

7575 readers
71 users here now

c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.

THE RULES

Instance Rules

Community Rules

If you ask someone to hack your "friends" socials you're just going to get banned so don't do that.

Learn about hacking

Hack the Box

Try Hack Me

Pico Capture the flag

Other security-related communities !databreaches@lemmy.zip !netsec@lemmy.world !securitynews@infosec.pub !cybersecurity@infosec.pub !pulse_of_truth@infosec.pub

Notable mention to !cybersecuritymemes@lemmy.world

founded 2 years ago
MODERATORS
top 4 comments
sorted by: hot top controversial new old
[–] morgunkorn@discuss.tchncs.de 10 points 1 week ago

A significant supply chain attack hit NPM after 17 popular Gluestack '@react-native-aria' packages with over 1 million downloads were compromised to include malicious code that acts as a remote access trojan (RAT).

[–] BaroqueInMind@lemmy.one 7 points 1 week ago (1 children)

Doesn't he Windows 11 start menu use React-native?

[–] Phen@lemmy.eco.br 3 points 1 week ago

The malware is not on react-native, but react-native-aria. A "copy" of Adobe's react-aria libs.

[–] corsicanguppy@lemmy.ca 1 points 1 week ago

Is this a new one or is this last week's? It's hard to keep the weekly supply chain 'sploits straight. Feed your leopards, kids.