
NPM under attack: the worm that steals credentials and checks your CI pipelines
On August 4, 2026, a npm poisoning campaign was detected that began with the malicious release keyv @ 6.0.0 and quickly expanded by multiple package names and organizations. It wa…







