According to researchers Andrey Polkovnychenko and Shachar Menashe, the repositories were first detected on March 21 and steadily grew from roughly 50 malicious npm packages to over 200 in a matter of ...
Additionally, one of the users pointed out that a GitHub commit was pushed by the "azure-sdk" bot and added the alexbirsantest package to the CSV file supposedly used for populating the Microsoft ...