
SANS Stormcast Tuesday, September 9th, 2025: Major npm compromise; HTTP Request Signature
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
00:00
Major npm Library Compromise and New Security Features
This chapter explores the compromise of popular npm libraries through phishing attacks, showcasing how attackers leveraged lookalike domains to gain unauthorized access. It also discusses the introduction of HTTP request signature headers as a new security measure to protect against future vulnerabilities.
Transcript
Play full episode