Incident36 Malicious npm Packages Deployed Reverse Shells Through Strapi Plugin Typosquatting
What Happened SafeDep discovered 36 malicious npm packages posing as legitimate Strapi CMS plugins. These packages exploited Redis and PostgreSQL connections to deploy reverse shells and steal credent














