Self-propagating npm worm steals tokens via postinstall hooks, impacting six packages and expanding supply chain attacks.
There is no recent news for this security. Got a confidential news tip? We want to hear from you. Sign up for free newsletters and get more CNBC delivered to your inbox Get this delivered to your ...