Mini Shai-Hulud npm campaign compromises @antv packages, targeting blockchain developers' GitHub tokens, AWS keys, and CI/CD secrets in a coordinated supply chain attack.
Threat actors earlier today published more than 600 malicious packages to the Node Package Manager (npm) index as part of a ...