JFrog found malicious npm packages that deploy a Windows RAT to steal Chrome credentials, run commands, and transfer files.
The smartest way to use AI may not be letting it interact with your files, but asking it to write software that handles them ...