A malicious actor found a struggling WordPress plugin company, bought it, and introduced malware to each product.
FEATURE Two supply chain attacks in March infected open source tools with malware and used this access to steal secrets from ...