Back to directory
WRITEUP #2989

"Zero-Days" Without Incident - Compromising Angular via Expired npm Publisher Email Domains

AI / LLMSupply chain attack
by@IAmMandatory(Matthew Bryant)
Program
GitHub
Published
Feb 11, 2022
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://thehackerblog.com/zero-days-without-incident-compromising-angular-via-expired-npm-publisher-email-domains-7kZplW4x/
RELATED WRITEUPS
Revival Hijack – PyPI hijack technique exploited in the wild, puts 22K packages at risk
AI / LLMCI/CD
GitHub Actions Exploitation: Repo Jacking And Environment Manipulation
AI / LLMRepojacking
Unmasking Harmful Content in a Medical Chatbot: A Red Team Perspective
AI / LLMAI
Microsoft Copilot: From Prompt Injection to Exfiltration of Personal Information
AI / LLMAI
Google AI Studio: LLM-Powered Data Exfiltration Hits Again! Quickly Fixed.
AI / LLMAI

Built with ❤️ by Shubham Rawat