New supply chain operation compromising keyv and cacheable. Some similarities to TeamPCP, but we're still investigating: www.wiz.io/blog/keyv-an...
keyv and cacheable npm Package Hijacked in Supply Chain Attack | Wiz Blog
Wiz Research is actively investigating an ongoing software supply chain attack affecting multiple keyv/cacheable npm packages.
wiz.io