A self-spreading package published on npm spams the registry by spawning new packages every every seven seconds, creating large volumes of junk.
First seen on bleepingcomputer.com
Jump to article: www.bleepingcomputer.com/news/security/new-indonesianfoods-worm-floods-npm-with-100-000-packages/
![]()

