20 Popular npm Packages With 2 Billion Weekly Downloads Compromised in Supply Chain Attack
20 Popular npm Packages With 2 Billion Weekly Downloads Compromised in Supply Chain Attack 2025-09-09 at 10:22 By Multiple npm packages have been compromised as part of a software supply chain attack after a maintainer’s account was compromised in a phishing attack. The attack targeted Josh Junon (aka Qix), who received an email message that […]