The four C&C channels used by GlassWorm, the botnet targeting open source software developers, have been disrupted.
Malicious packages across npm, PyPI, and Crates.io show how poisoned developer workflows can become a route into enterprise systems.