The Bitwarden CLI was briefly compromised after attackers uploaded a malicious @bitwarden/cli package to npm containing a credential-stealing payload capable of spreading to other projects.
A ClickFix campaign targeting macOS users delivers an AppleScript-based infostealer that collects credentials and live ...