Another malware wave is washing through open-source software repos, stealing publishing tokens, installing OS”‘level backdoors and persisting in developer tools and CI pipelines.
First seen on cyberscoop.com
Jump to article: cyberscoop.com/mini-shai-hulud-malware-npm-packages-compromised-again/
![]()

