144 Mastra npm Packages Compromised via Hijacked Contributor Account
Wednesday, 17 June 2026
Add Comment
As many as 144 npm packages associated with the Mastra namespace ("@mastra/*"), a popular open-source JavaScript and TypeScript framework for building artificial intelligence (AI) applications, have been compromised as part of a software supply chain attack codenamed easy-day-js, per findings from JFrog, SafeDep, Socket, and StepSecurity. "A single npm account (ehindero) mass-published more
from The Hacker News https://ift.tt/3DSsjlv
Genrerating Link.... 15 seconds.
Your Link is Ready.
0 Response to "144 Mastra npm Packages Compromised via Hijacked Contributor Account"
Post a Comment