NPM Supply Chain Compromised by Self-Replicating Shai-Hulud Token-Stealing Worm
        
        
        
        
          
        
        
      
        
    
        
        A novel self-replicating worm is actively compromising NPM developer accounts, injecting malicious code into popular packages to steal cloud service tokens and expose private repositories, posing systemic risk to software supply chains.
        
        NPM Supply Chain Compromised, Crypto Wallets Targeted by Clipper Malware
        
        
        
        
          
        
        
      
        
    
        
        A compromised open-source dependency allows silent address substitution, posing a systemic risk to browser-based crypto transactions.
