Malicious npm Packages Target n8n — Tokens Stolen Now
Researchers found malicious npm packages masquerading as n8n integrations that exfiltrate OAuth tokens and API keys. Confirmed supply‑chain compromise — act now to revoke keys, audit dependencies and lock down workflows.