Bitwarden CLI npm package compromised to steal developer credentials
From BleepingComputer to All on Thu Apr 23 16:18:16 2026
The Bitwarden CLI was briefly compromised after attackers uploaded a malicious @bitwarden/cli package to npm containing a credential-stealing payload capable of spreading to other projects. [...]