Claude Opus commit added malicious npm dependency in Feb 2026, enabling crypto theft and persistent RAT access.
With a bonus script that puts any search tool to shame.
Once you separate the roles of OS and personal data, the whole system starts to feel more deliberate.
A new vulnerability dubbed Pack2TheRoot could be exploited in the PackageKit daemon to allow local Linux users to install or ...