HIGH: 36 Malicious npm Packages Masquerade as Strapi Plugins to Deploy Persistent Implants
Security researchers discovered 36 malicious npm packages impersonating Strapi CMS plugins. The packages exploit Redis and PostgreSQL databases, deploy reverse shells, harvest credentials, and target cryptocurrency platforms with hard-coded database credentials.