SAP npm packages poisoned on April 29, 2026 + AES-256-GCM encrypted credential theft + AI coding tools abused for spread.
As agents are given permission to handle provisioning, billing, and deployment, enterprises face new challenges around ...