ChainDrop npm Worm Exploits Ethereum Blockchain for Command and Control
Rapid Read

ChainDrop npm Worm Exploits Ethereum Blockchain for Command and Control

What's Happening? A new self-propagating supply chain worm, named ChainDrop, has been identified in the npm ecosystem. The worm has compromised 444 packages and 2,212 versions across multiple organizations. It uses a preinstall script to download the Bun JavaScript runtime and execute a second-stage
AI Generated
This may include content generated using AI tools. Glance teams are making active and commercially reasonable efforts to moderate all AI generated content. Glance moderation processes are improving however our processes are carried out on a best-effort basis and may not be exhaustive in nature. Glance encourage our users to consume the content judiciously and rely on their own research for accuracy of facts. Glance maintains that all AI generated content here is for entertainment purposes only.