A supply chain attack compromised HTTP client Axios, which has 100M weekly npm downloads, introducing a malicious dependency into specific npm releases
Socket Research Team … Our analysis shows the malicious package deploys a multi-stage payload, including a remote access trojan …