{
"$type": "site.standard.document",
"bskyPostRef": {
"cid": "bafyreifldxlcijukarapwcbn3zpwgvtkmvlbxbv5kx6f5ignppak764g4q",
"uri": "at://did:plc:z3a345rn6njmxg2o5lxmj3en/app.bsky.feed.post/3mlvy4swyg3b2"
},
"coverImage": {
"$type": "blob",
"ref": {
"$link": "bafkreia6vw5cr6srf4pgpp2ezazwrdqipat4otoxi27psabmkr57f6z2ku"
},
"mimeType": "image/jpeg",
"size": 343211
},
"path": "/news/security/popular-node-ipc-npm-package-compromised-to-steal-credentials/",
"publishedAt": "2026-05-15T17:10:42.000Z",
"site": "https://www.bleepingcomputer.com",
"tags": [
"Security"
],
"textContent": "Hackers have injected credential-stealing malware into newly published versions of node-ipc, a popular inter-process communication package, in a new supply chain attack targeting npm. [...]",
"title": "Popular node-ipc npm package compromised to steal credentials"
}