Red Hat Removes Tainted Packages After Supply Chain Compromise
Red Hat removed dozens of packages from its software distribution pipeline after attackers used a compromised GitHub account to distribute credential-stealing malware to developers, affecting 32 packages downloaded roughly 117,000 times a week.