CEO spills the Tea about massive token farming campaigns
ID: 2af69bef-b30c-5565-b0a0-f402942790be
STIX ID: report--2af69bef-b30c-5565-b0a0-f402942790be
Feed Name: The Register (Security)
Threat Score
The article reports that attackers exploited Tea Protocol's incentive program to flood open-source registries (notably npm) with spam packages—first thousands, then tens to hundreds of thousands—aimed at farming Tea tokens; this large-scale registry pollution exposed supply-chain risks and prompted the Tea team to redesign provenance, ownership checks, Sybil detection, and integration with package verification tools to prevent future abuse.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
