Threats Tagged 'proc-macro1'
View all threats tagged with 'proc-macro1'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'proc-macro1'
Click on any threat for detailed analysis and mitigation recommendations
Popular Rust Crates Compromised in Build-Time Supply Chain Attack 0 A supply chain attack compromised three legitimate Rust crates (arrayref, internment, append-only-vec) by injecting a malicious dependency named proc-macro1, a typosquat of proc-macro2. This malicious package executed malware during Cargo builds via its build.rs script, delivering platform-specific backdoors for Linux, macOS, and Windows. The malware profiled victims, collected browser data, established persistence, and enabled remote command execution. It communicated with command-and-control infrastructure at 23.254.165.112 and used a domain generation algorithm for fallback. Developer workstations, CI/CD runners, and release infrastructure were particularly at risk. The Rust Security Response Team removed the malicious releases and locked the maintainer account to mitigate the threat. Join the discussion | AlienVault OTX General | 08/20/2026, 21:47:20 UTC Added: 08/21/2026, 08:22:35 UTC |
Showing 1 to 1 of 1 result