The Bitwarden CLI NPM package compromise is tied to a Checkmarx supply chain attack and references the Shai-Hulud worm.
The China-linked APT GopherWhisper has been using legitimate services and various Go-based backdoors in attacks.