
This episode discusses a significant NPM compromise and its implications for cybercrime.
This month marked the discovery of one of the largest NPM compromises in history. Though AI-assisted social engineering, a profilic developer dubbed Qix was phished. His account was then maliciously used to publish poisoned packages, many of which were used to manipulate crypto transactions. Thankfully, it was detected before too many users downloaded these packages, but it highlights how vulnerable we can be if these upstream components get compromised. In this special State of Cybercrime episode, Matt and David break down this NPM compromise, and cover everything else new in the world of cybercrime.
Hosts: Matt Radolec, David Gibson
Organizations: NPM, crypto
Explore listener stats, chart rankings, contacts and more on the State of Cybercrime podcast page.