BREAKING
8h agoAmazon Earnings, Trainium and Commodity Markets, Additional Amazon Notes///8h agoWomen sue the men who used their Instagram feed to create AI porn influencers///8h agoFast16 Malware///8h agoAmazon Earnings, Trainium and Commodity Markets, Additional Amazon Notes///8h agoWomen sue the men who used their Instagram feed to create AI porn influencers///8h agoFast16 Malware///
BACK TO GLOSSARY
PRDProductsSafety

plain-crypto-js

4 mentions across all digests

plain-crypto-js is a malicious npm package (version 4.2.1) injected into compromised axios releases during a March 2026 supply chain attack, deploying a remote access trojan capable of remote code execution, credential theft, and data exfiltration.

/// Stats
First Seen2026-03-31
Last Seen2026-04-03
Total Mentions4
Subject Mentions4
Last 7 Days0
Sources3
Peak Relevance4/5
Active Predictions1
/// Connected Entities