Security researchers on Monday found dozens of Red Hat npm package releases infected with the Mini Shai Hulud worm that TeamPCP cybercriminals recently open sourced. The new supply chain attack hit at least 32 npm package releases published under the Red Hat Cloud Services namespace , according to security researchers from Google owned Wiz, who traced the malware to one Red Hat employees compromised GitHub account. They said the affected packages are downloaded around 80,000 times a week. “T

Read the full article at The Register