Shai-Hulud worm copycats emerge after source code leak
Source: Security Affairs · Category: Supply Chain
Shai-Hulud worm copycats already attacking npm developers days after source code leaked on GitHub; fast supply-chain exploitation. Open-source ecosystem under active threat; law firms and clients using npm dependencies face immediate dependency-injection risk.