NPM packages containing malware were downloaded one million times every week.

After 17 well-known Gluestack ‘@react-native-aria’ packages with over a million downloads were compromised to contain malicious code that functions as a remote access trojan (RAT), NPM was the target of a serious supply chain attack.

NPM packages containing malware were downloaded one million times every week. Read More »