Hackers Infiltrated n8n’s Community Node Ecosystem With a Weaponized npm Package

Attackers have successfully infiltrated n8n’s community node ecosystem using a malicious npm package disguised as a legitimate Google Ads integration tool. The attack reveals a critical vulnerability in how workflow automation platforms handle third-party integrations and user credentials. The malicious package, named n8n-nodes-hfgjf-irtuinvcm-lasdqewriit, tricked developers into entering their Google Ads OAuth credentials through a seemingly […]

The post Hackers Infiltrated n8n’s Community Node Ecosystem With a Weaponized npm Package appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: