Bleeping Computer, CryptoCurrency, News, SecurityMalicious Rspack, Vant packages published using stolen NPM tokens Posted on December 20, 2024 by [email protected] Three popular npm packages, @rspack/core, @rspack/cli, and Vant, were compromised through stolen npm account tokens, allowing threat actors to publish malicious versions that installed cryptominers. […] [email protected] US charges Russian-Israeli as suspected LockBit ransomware coder Listen to our podcast conversation about Project Astra.