Over 400 Arch Linux packages compromised to push rootkit, infostealer
…Supply-chain management company Sonatype also published a report on a campaign targeting the AUR repository and delivering the malicious atomic-lockfile npm package, but using a different method. Sonatype researchers say…