
Security News
Another Round of TEA Protocol Spam Floods npm, But It’s Not a Worm
Recent coverage mislabels the latest TEA protocol spam as a worm. Here’s what’s actually happening.


Sarah Gooding
October 2, 2025
Socket CEO Feross Aboukhadijeh recently joined LogRocket's PodRocket podcast to discuss the unprecedented wave of npm supply chain attacks that have hit the JavaScript ecosystem over the past few months: from phishing campaigns targeting maintainers to the Shai-Hulud worm that's affected more than 500 packages.
In this episode:
npm installThis is essential listening for any JavaScript developer concerned about supply chain security in 2025. Check out the video below.
Subscribe to our newsletter
Get notified when we publish new security blog posts!
Try it now

Security News
Recent coverage mislabels the latest TEA protocol spam as a worm. Here’s what’s actually happening.

Security News
PyPI adds Trusted Publishing support for GitLab Self-Managed as adoption reaches 25% of uploads

Research
/Security News
A malicious Chrome extension posing as an Ethereum wallet steals seed phrases by encoding them into Sui transactions, enabling full wallet takeover.