The recent compromise of widely used npm packages chalk, debug, and more than a dozen others reveals that even the most trusted open source projects are not immune to compromise.
First seen on securityboulevard.com
Jump to article: securityboulevard.com/2025/09/npm-chalk-and-debug-packages-hit-in-software-supply-chain-attack/
![]()

