Another day, another NPM worm: https://www.stepsecurity.io/blog/chaindrop-npm-worm
ChainDrop npm Worm: Bun-loaded CI/CD credential harvester with Ethereum dead-drop C2 - StepSecurity
A self-propagating worm is publishing compromised versions of dozens of npm packages using stolen maintainer credentials. See the affected packages and what to do now.
stepsecurity.io