Malicious Nx Packages in ‘s1ngularity’ Attack Leaked 2,349 GitHub, Cloud, and AI Credentials
A supply chain attack has been reported involving malicious versions of the nx package and its plugins, which were published to npm. These malicious packages contained code capable of scanning the file system and collecting sensitive credentials, impacting users' security.