Massive ChainDrop npm supply-chain attack infects hundreds of packages

Read full story on BleepingComputer
Share
Massive ChainDrop npm supply-chain attack infects hundreds of packages
AI disclosure

Summary

Self-propagating malware named 'ChainDrop' has compromised more than 1,300 packages with a combined 2 billion monthly downloads on the Node Package Manager (npm) registry. [...]

Original reporting

Open original source
Read full article on BleepingComputer

Get the AFBytes Brief

Major stories, AI-assisted analysis, and what to watch next. Free, monthly, unsubscribe anytime.