Red Hat's official npm packages were poisoned with a self-spreading credential worm. Here is what happened.
Issue #004 — Plus: Microsoft Defender has two active zero-days with a CISA deadline tomorrow, Palo Alto firewalls under active exploitation, and GitHub breached through a VS Code extension.