150,000 Packages Flood NPM Registry in Token Farming Campaign
A self-replicating attack led to a tidal wave of malicious packages in the NPM registry, targeting tokens for the tea.xyz protocol.
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
