> IT-Sentinel.com

// Cybersecurity & IT News Aggregator - Real-time Threat Intelligence Feed

NEWS CVE
← messages.back_to_articles

> Massive ChainDrop npm supply-chain attack infects hundreds of packages

[SOURCE] BleepingComputer [AUTHOR: Bill Toulas] [DATE: 04/08/2026 15:24] [LANGUAGE: EN]
Self-propagating malware named 'ChainDrop' has compromised more than 1,300 packages with a combined 2 billion monthly downloads on the Node Package Manager (npm) registry. [...]
[messages.read_original_source] →