npm supply chain securityBreaking: The npm Packages Your Projects Trust Just Became the Attack VectorHow two separate waves in September 2025 turned trusted JavaScript libraries into delivery vehicles for crypto theft and self-spreading wormsnpm Supply Chain AttackJavaScript SecuritySoftware Supply ChainOpen Source SecurityPatch Tuesday·Jun 12, 2026·6 min readRead the story