Widespread npm Supply Chain Attack: Breaking Down Impact & Scope Across Debug, Chalk, and Beyond
wiz.io | incident | #supply-chain | #cryptocurrency | #npm | #social-engineering | #wiz-research | #debug | #chalk
Summary
Wiz dissects the npm debug/chalk incident: releases live ~2 hours carried a wallet-hijacking browser interceptor into affected builds; telemetry quantifies ~99% prevalence and ~10% malware presence.
- Published
- Collected
Skip to content