Red Hat npm packages compromised to steal developer credentials
…Those commits added a GitHub Actions workflow and a script that abused npm's publishing mechanism to release backdoored packages. "When the workflow runs, it installs Bun and executes _index.js , passing…