This article discusses how the Sonatype Security Research team uncovered a malware campaign using npm packages to target Kubernetes configurations and SSH keys.
More: https://blog.sonatype.com/npm-packages-caught-exfiltrating-kubernetes-config-ssh-keys
Post #865
950