I genuinely covered my eyes with my hands at one point.
SAP npm packages poisoned on April 29, 2026 + AES-256-GCM encrypted credential theft + AI coding tools abused for spread.
Claude Opus commit added malicious npm dependency in Feb 2026, enabling crypto theft and persistent RAT access.
一些您可能无法访问的结果已被隐去。
显示无法访问的结果