IncidentSelf-Propagating npm Malware Steals Credentials, Publishes More Malware
What Happened The CanisterSprawl malware campaign compromised npm packages to steal sensitive data from developer machines, such as tokens and API keys. It then used these credentials to publish more














