Writing · Tag
1 post tagged #npm.
North Korean threat actors are targeting AI coding tools. Trojanized npm packages hunt for .cursor, .claude, .gemini, and .windsurf directories to steal API keys and source code.
Real costs, real tools, no fluff. One email per week with what I'm building, what's working, and what's not.