CyberNotableSingle-sourceDeveloping
4.8
npm 'indexed-btree' malware evades install-script defenses via runtime execution
BleepingComputerLO·2 days ago
Rust team members and popular crate owners have been targeted via video calls, with techniques matching those used by North Korean threat actors. The campaign's scope and connection to prior Rust ecosystem attacks remain unclear, but the targeting of maintainers suggests a supply-chain compromise intent.