Mike Dilger ☑️ on Nostr: FYI there is a massive cyberattack on NPM right now, package developers being ...
FYI there is a massive cyberattack on NPM right now, package developers being attacked, nasty commits being added and published, tokens being stolen and used to corrupt more packages. The ecosystem is currently widely corrupted. We just got an advisory from the NZ government about it.
Published at
2025-09-29 03:37:37 UTCEvent JSON
{
"id": "168938fde925e7c014600d865c364ad5980aa2c1fd355cbdaf05e7e8eb3d1fc9",
"pubkey": "ee11a5dff40c19a555f41fe42b48f00e618c91225622ae37b6c2bb67b76c4e49",
"created_at": 1759117057,
"kind": 1,
"tags": [],
"content": "FYI there is a massive cyberattack on NPM right now, package developers being attacked, nasty commits being added and published, tokens being stolen and used to corrupt more packages. The ecosystem is currently widely corrupted. We just got an advisory from the NZ government about it.",
"sig": "1327d32b314083583dac96cce4523bc622bc8753c2f154cfc5122192c41f4837e681ebbc7569006d3fd73dbda7220ecad448c9e9b024f668610a499c48d2e52d"
}