Elektrine lite

← Feed

@ghostwriter@phpc.social

Post #2965875

2026-05-23 09:38 UTC

🚨 A compromise affecting the community-maintained Laravel Lang project introduced remote code execution backdoors across multiple packages, including: - Laravel-Lang/lang - Laravel-Lang/http-statuses - Laravel-Lang/actions - Laravel-Lang/attributes All tags were rewritten pointing to malicious commits https://www.aikido.dev/blog/supply-chain-attack-targets-laravel-lang-packages-with-credential-stealer https://github.com/Laravel-Lang/lang/issues/8295 https://github.com/Laravel-Lang/common/issues/257 https://www.stepsecurity.io/blog/laravel-lang-supply-chain-attack https://socket.dev/blog/laravel-lang-compromise #PHP #Laravel #SupplyChainAttack #RemoteCodeExecution #RCE #Packagist

Replies (0)

No replies.