← Back to feed
vendor Microsoft Security Blog

ChainDrop supply chain compromise: Anatomy of a self-propagating worm

Microsoft Security Blog • • Microsoft

A credential-stealing worm hidden in more than 400 compromised npm packages automatically spread across software ecosystems by republishing malicious updates...

T1195
Read the full story Microsoft Security Blog →

Related Coverage

vendor Introducing Clef-omni with full multimodality, plus a faster Clef and a cheaper Clef-flash Cloudflare Blog · Oct 9 vendor Wordfence Intelligence Weekly WordPress Vulnerability Report (September 28, 2026 to October 4, 2026) Wordfence Blog · Oct 9 vendor Introducing on-demand CPU and memory profiling with flamegraphs for Workers and Durable Objects Cloudflare Blog · Oct 9