A self-propagating worm has infected the npm ecosystem, automatically spreading from one compromised package to others while harvesting cloud credentials from developer environments. The popular @ctrl/tinycolor package with over 2 million weekly downloads has been compromised alongside other NPM packages. #NPM #Cybersecurity #ConnectWiseCRU #Cyberresearch