Anatomy of a Phish: How Billions of Weekly Downloads Were Compromised in a Massive NPM Attack
A deep dive into the September 2025 NPM supply chain attack that compromised 18 popular packages like 'chalk' and 'debug'. We'll explore how a simple phish led to chaos, what the malware did, and why the open-source ecosystem dodged a bullet.