The IndonesianFoods Worm Has Created Over 100,000 Malicious Packages in npm
A self-propagating worm called IndonesianFoods has infected npm, spawning new packages every seven seconds. According to Sonatype security researchers, the malware has already created over 100,000 packages, and the number continues to grow.
The Worm's Naming Scheme
The worm's name references its package naming pattern,