Npm Worm Attack Returns, Compromises 25,000 Repos in Days
A self-propagating npm malware campaign has resurfaced, compromising secrets from over 25,000 developer repositories within three days. The attack targets major packages including Zapier, AsyncAPI, and Postman, executing malicious code during the pre-install phase. GitHub is struggling to contain th