00:00
2026-06-12
safedep.io
ai-safety
astro.config.mjs Supply Chain Attack via Blockchain C2
A supply chain attack targeting the open-source tool Understand-Anything (57,000+ GitHub stars) hid an obfuscated payload in `homepage/astro.config.mjs` via pull request #206, which executes automaticβ¦