Keyv and friends compromised in active Shai-Hulud supply chain attack
The Shai-Hulud threat group has compromised the popular Keyv caching library and several related npm packages in an active supply chain attack. The breach highlights the growing sophistication of npm ...