Five major GitHub repositories targeted by the autonomous AI bot “hackerbot-claw” were compromised through various injection ...
A self-replicating npm worm dubbed SANDWORM_MODE hits 19+ packages, harvesting private keys, BIP39 mnemonics, wallet files and LLM API keys from dev environments.