Crypto-Stealing Malware Infiltrates Core JavaScript Libraries Used by Millions
The NPM (node packet supervisor) account of developer ‘qix’ was compromised, permitting hackers to publish malicious variations of his packages. The attackers printed malicious variations of dozens of extraordinarily widespread JavaScript packages, together with elementary utilities. The hack was huge in scope for the reason that affected packages have over 1 billion mixed weekly downloads….
