PhantomRaven NPM Supply-Chain Attack: How Remote Dependencies Hide Malware (opens in new tab)
The PhantomRaven campaign shows how attackers can hide malware outside the npm registry using RDD, allowing malicious code to execute during installation
Read the original article