Mini Shai-Halud hackers publish over 600 compromised npm packages — developers warned to be on their guard | Daily Reports Online
More than 600 malicious npm packages were published in a coordinated supply‑chain attack linked to TeamPCP’s Shai‑Hulud campaign The attackers compromised ecosystems including TanStack, Mistral, and antv, introducing infostealers and persistence mechanisms in developer environments Developers are advised to roll back to safe versions released before May 18 and rotate any exposed credentials Cybercriminals published…










