NPM Supply Chain Attack Hits AI Coding Tools via Jscrambler

The official jscrambler NPM package was compromised to deploy Rust-based info-stealing malware. The attack targeted crypto wallets, AI coding tools, and cloud credentials, with later variants bypassing install scripts.

2026-07-13 ~ 2026-07-13 · 3 related posts