Cybersecurity researchers have uncovered two hijacked npm packages and a cluster of Go packages that are designed to deploy a Python-based information stealer on compromised Windows, Linux, and macOS hosts. “This attack avoids the most common npm execution paths through... Read more → The post Hijacked npm and Go Packages Use VS Code Tasks to Deploy Python Infostealer appeared first on IT Security News .