A self-replicating attack led to a tidal wave of malicious packages in the NPM registry, targeting tokens for the tea.xyz protocol.
First seen on darkreading.com
Jump to article: www.darkreading.com/application-security/150000-packages-flood-npm-registry-token-farming
![]()

