The typosquatted “@acitons/artifact” package targeted GitHub’s CI/CD workflows, stealing tokens and publishing malicious ...
The GlassWorm malware has reared its ugly head again in the Open VSX registry, roughly two weeks after being removed.