Malicious packages on:

-npm: https://socket.dev/blog/malicious-npm-packages-target-whatsapp-developers-with-remote-kill-switch
-PyPI: https://about.gitlab.com/blog/gitlab-uncovers-bittensor-theft-campaign-via-pypi/
-Go: https://socket.dev/blog/11-malicious-go-packages-distribute-obfuscated-remote-payloads