MarketsSANDWORM_MODE npm Worm Injects Malicious MCP Servers Into AI Coding ToolsSocket.dev·high signalXBlueskyLinkedInCopy linkMulti-stage npm worm deploys rogue MCP servers into Claude Code Cursor Windsurf configs. 19 typosquatted packages harvest tokens SSH keys cloud creds. Dormant dead switch can wipe home directories.SourceSource pageSocket.dev↳ Follow the threadShared entity / Policy dependencyECC has 243,870 stars and 36,883 forks but has not tagged a release in a month despite pushing dailyGitHubShared entity / Stack layerHermes Agent Shipped an MCP Catalog Pinned to a Mutable Branch, Turning Any Upstream Compromise Into RCE (CVE-2026-82021, 9.0)NVDShared entity / Stack layeronly-cli Claims 142x Fewer Tokens Than Raw HTML and Unblocks Reddit and LinkedIn for AgentsGitHub (only-cli/oc), via r/ClaudeAIShared entity / Stack layergraphify is tagging a release almost daily, three in five days, at 111,804 starsGitHubShared entity / Stack layertare does quota forensics on Claude Code logs and finds the cost is re-sent context, not new workShow HNShared entity / Stack layerSiYuan's MCP Tools Let Prompt Injection Upload SSH Keys and Rebind DNS Past the SSRF Guard (CVE-2026-82233, CVE-2026-82234)NVDShared entity / Stack layerGrith Scores Every Syscall a Coding Agent Makes and Queues the Ambiguous Ones for a HumanGitHub (Show HN, 2026-08-28)Shared entity / Stack layerDeepSeek-Reasonix Made Its Go Rewrite the Default Branch and Put the TypeScript Line Into MaintenanceGitHub