A massive software supply chain attack has compromised over 20 popular npm packages, including chalk and debug, affecting 2B+ weekly downloads. Learn how a simple phishing attack on a maintainer led to crypto-stealing malware being distributed to millions.