Supply chain attack compromises npm packages to spread backdoor malware
A fresh supply chain ambushâScavengerâslipped into npm through the front door. Attackers phished maintainers of high-profile packages likeis,eslint-plugin-prettier, andsynckit, then dropped cross-platform JavaScript malware straight into the codebase. Real-time C2 channels included. They typosquatt..