security: ChainDrop supply chain compromise: Anatomy of a self-propagating worm
Microsoft Security Blog
2026-08-04
Microsoft describes ChainDrop, a credential-stealing worm embedded in 400+ compromised npm packages that spread by republishing malicious updates across software ecosystems. The post outlines the attack chain, affected environments, and guidance for detection, hunting, and remediation.