A SAP npm packages compromise exposed sensitive developer data through a supply chain attack. Attackers inserted malicious code into official packages and triggered credential theft during installation. Official Packages Turned Into Attack Vectors The attack targeted trusted SAP npm packages distributed through the npm registry. These tools are widely used in development workflows, which increased…