A threat actor published a playbook for exploiting #npm on a dark web forum, demonstrating how packages can be weaponized to build a blockchain-powered botnet. This rare inside look reveals the tools and techniques used in the latest supply chain attack.
https://socket.dev/blog/exploiting-npm-to-build-a-blockchain-powered-botnet #JavaScript