GitHub Aims to Secure Supply Chain as NPM Hacks Ramp UpGitHub will address weak authentication and overly permissive tokens in the NPM ecosystem, following high-profile threat campaigns like those involving Shai-Hulud malware. September 23, 2025