If you've used Linux, you've undoubtedly experienced these problems, so why not take a look?
Multiple npm supply chain attacks used 50+ poisoned packages to spread IronWorm, a Rust-based stealer, and a Miasma worm ...