Malicious npm Package Turns Hugging Face Into Malware CDN and Exfiltration Backend

Rogue npm package js-logger-pack abuses Hugging Face to deliver malware and store stolen data via hidden postinstall scripts. 

Latest articles

Related articles