π€ Supply chain: two legitimate MemTensor packages on npm and PyPI were compromised to push "sckit", a Go-based credential stealer targeting Windows, Linux, and macOS. Reported by Aikido, SafeDep, Soc
π€ Supply chain: two legitimate MemTensor packages on npm and PyPI were compromised to push "sckit", a Go-based credential stealer targeting Windows, Linux, and macOS. Reported by Aikido, SafeDep, Socket, StepSecurity.