ChainDrop worm infects 2,200 npm packages and locks 275,000 accounts
The ChainDrop worm reportedly infected 2,200 npm packages and caused 275,000 accounts to be locked.
By DoomRadar · Published on DoomRadar .
Why it matters
A compromise across thousands of software packages could expose downstream developers and users to widespread supply-chain disruption.
Related source links
These links were collected with this event. Recorded source dates may reflect when a link was found. Article publication dates are shown only when available from the source. Open the originals for their full context.
- ChainDrop-Wurm: 2.200 npm-Pakete infiziert, 275.000 gesperrt ↗boerse-express.com · Recorded source date: Sep 8, 2026, 3:31 AM UTC
AI-assisted, source-based analysis. Methodology · Report a correction