New Supply Chain Malware Operation Hits npm and PyPI Ecosystems, Targeting Millions Globally
- Posted on June 8, 2025
- By The Hacker News
- 1 Views

New Supply Chain Malware Operation Hits npm and PyPI Ecosystems, Targeting Millions Globally

Supply chain attack infects 16 GlueStack npm packages used by 1M weekly users, enabling malware that steals data and controls systems.