The Daily Cyber

Archives
Log in
Subscribe
June 17, 2026

Mastra npm packages hit by supply-chain compromise

Mastra npm packages hit by supply-chain compromise

Mastra npm packages hit by supply-chain compromise

More than 140 Mastra npm packages were compromised through a hijacked contributor account and a malicious easy-day-js dependency. Teams should audit recent installs, remove affected versions, and rotate developer API keys or wallet secrets.

Read on dailycyber.net →

Don't miss what's next. Subscribe to The Daily Cyber:
← Newer Windows USB Clipper Worm Targets Crypto Wallets Older → FortiSandbox Flaws Exploited in the Wild
Powered by Buttondown, the easiest way to start and grow your newsletter.