
Known npm Worm Returns After 111 Days and Security Scanning Still Let It Through
A known Shai-Hulud npm worm payload has resurfaced after 111 days of inactivity, raising fresh questions about the effectiveness of registry-level malware screening. The May campaign demonstrated how quickly a single compromised maintainer account can turn into a software supply-chain incident. Attackers pushed malicious versions across npm packages, including widely used visualization and frontend dependencies. […]
The post Known npm Worm Returns After 111 Days and Security Scanning Still Let It Through appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.