• Another NPM worm

    From LWN.net@1337:1/100 to All on Tuesday, August 04, 2026 16:00:05
    Another NPM worm

    Date:
    Tue, 04 Aug 2026 14:54:05 +0000

    Description:
    StepSecurity is reporting the emergence of a new worm affecting NPM packages. The design of the worm is nothing new, but the rapidity with which it is exploiting captured NPM packager credentials is noteworthy. TL;DR: A self-propagating worm, which we are calling ChainDrop, is spreading rapidly through the npm ecosystem. So far 435 packages and more than 1,550
    compromised versions have been flagged, starting with [email protected]. If you are using any of the packages listed below, assume your environment is compromised. We are still investigating the full scope; check back on this post for updates.

    ======================================================================
    Link to news story:
    https://lwn.net/Articles/1087108/


    --- Mystic BBS v1.12 A49 (Linux/64)
    * Origin: tqwNet UK HUB @ hub.uk.erb.pw (1337:1/100)