Person
Jason Soroko
- First Reported
- Oct 6, 2026
- Latest Reported
- Oct 6, 2026
Reported Context (1)
- Sectigo senior fellow who described the shift from installation-time to use-time activation. Malicious npm Package Bypasses Install-Script Security Controls
People (8)
MITRE ATT&CK (2)
Products (1)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.