️ Npm package Bitwarden hacked to steal developers’ credentials️ At the end of last week, the npm package bitwarden/cli turned malicious: attackers injected an infostealer into it that stole tokens, SSH keys, and secrets from developers’ CI/CD pipelines. According to experts from JFrog, Socket, and OX Security, the malicious… https://hackmag.com/news/bitwarden-hack?utm_source=mastodon&utm_medium=social&utm_campaign=repost_hackmag_to_socials#news