TeamPCP’s Mini Shai-Hulud campaign used hijacked GitHub OIDC tokens to spread a credential-stealing worm through TanStack npm ...
Multiple SAP npm packages were compromised in a supply chain attack designed to steal developer credentials and tokens.
Several SAP npm packages were exposed to a supply chain attack. The hacker group TeamPCP is behind it, say security ...