https://www.elastic.co/security-labs/axios-one-rat-to-rule-them-all - #Axios #npm package got compromised. #security Yes, it's since been fixed. But the author used #2FA and OIDC publishing...
Inside the Axios supply chain compromise - one RAT to rule them all — Elastic Security Labs

Elastic Security Labs analyzes a supply chain compromise of the axios npm package delivering a unified cross-platform RAT