Popular npm Package Hijacked: Massive Data Theft and Crypto Mining Campaign Exposed
A sophisticated supply chain attack targeting the npm registry through the malicious @0xengine/xmlrpc package has compromised systems for over a year. The malware steals sensitive data, mines cryptocurrency, and spreads through direct installation and a WordPress tool dependency, affecting...
