credential-stealer

Tag

Cards List
#credential-stealer

For the 2nd time in weeks, Microsoft packages laced with credential stealer

Ars Technica · 2026-06-08 Cached

For the second time in weeks, Microsoft's verified open-source packages were compromised with credential-stealing malware, affecting 73 packages on GitHub. The attack, linked to threat actor TeamPCP, uses stolen OIDC tokens and spreads laterally through cloud infrastructures.

0 favorites 0 likes
← Back to home

Submit Feedback