Shai-Hulud & ChainDrop Worms Compromise Hundreds of npm Packages in Massive Supply Chain Attack
Security researchers and software maintainers are grappling with the fallout from an automated software supply chain attack that compromised over 440 npm packages in a matter of hours. According to reports, the malicious campaign—designated as the Shai-Hulud worm—leveraged automated scripts to target JavaScript repositories. The incident underscores vulnerabilities in the core infrastructure powering modern web … Read more