Security News Malicious npm Package Stole Files From Claude AI User Directory via GitHub TheHackerNews Daniel Bender 27 May 2026 Share Malicious npm package downloaded 676 times stole Claude AI files via GitHub uploads, increasing AI-driven malware risks.