Fast-Moving Shai-Hulud Attack Infects npm Packages with 2 Billion Monthly Downloads

A fast-moving supply-chain attack is compromising npm packages with over 2 billion monthly downloads, stealing secrets and information. This matters as it affects a wide range of software packages. Affected users should review their dependencies and update to secure versions. npm users should be cautious when installing packages.

Source →
FeedLens — Signal over noise Last 7 days