Mini Shai-Hulud npm campaign compromises @antv packages, targeting blockchain developers’ GitHub tokens, AWS keys, and CI/CD secrets in a coordinated supply chain attack.
The malicious publishes started just before 2 a.m. UTC on May 19. By the time most developers…
Read full article