Chisato · · 6 min read npm Slopsquatting Attack: 1,000+ Malicious Packages
A Russian-linked campaign named WEL1DROPPER flooded npm with 1,000+ slopsquatted packages that drop a cross-platform RAT. How the attack works and how to defend.
#Security
#Supply Chain
#npm