Mastra npm packages hit by supply-chain compromise
Mastra npm packages hit by supply-chain compromise
More than 140 Mastra npm packages were compromised through a hijacked contributor account and a malicious easy-day-js dependency. Teams should audit recent installs, remove affected versions, and rotate developer API keys or wallet secrets.
Don't miss what's next. Subscribe to The Daily Cyber:
