Attackers have distributed 18 malicious npm packages that install remote access trojans on developers' machines, specifically targeting users of Alibaba tools. You should immediately audit your npm dependencies to identify and remove any suspicious packag
Read the full article: https://thehackernews.com/2026/08/18-malicious-npm-packages-deliver-cross.html