Hackers hijack npm packages with 2 billion weekly downloads in supply chain attack

Monday, September 8, 2025 4:47 PM | BleepingComputer
In what is being called the largest supply chain attack in history, attackers have injected malware into NPM packages with over 2.6 billion weekly downloads after compromising a maintainer's account in a phishing attack. [...]