The other day I wrote about the npm worm that learned to trust your AI agent — a keyv -adjacent supply-chain attack that didn't bother with credential exfiltration. It planted hooks into Claude Code and VS Code, timed to fire on SessionStart / folderOpen , and let the editor's own trust in your ...
Source: [Dev.to](https://dev.to/coridev/i-built-the-thing-my-last-article-said-didnt-exist-yet-4hof)