Bad Actor Drops 36 Malicious Packages in npm, Targets Guardarian Users April 6, 2026 by Jeff Burt The npm code repository is again being used by a bad actor to launch a supply chain attack that includes three dozen malicious packages that appear as Strapi CMS plugins […]