The Axios supply chain attack used individually targeted social engineering

📰 Simon Willison's Blog

The Axios team have published a full postmortem on the supply chain attack which resulted in a malware dependency going out in a release the other day , and it involved a sophisticated social engineering campaign targeting one of their maintainers directly. Here's Jason Saayman'a description of <a href="https://github.com/axios/axios/issues/10636#issuecomm

Published 3 Apr 2026
Read full article → ← Back to Reads