Security News n8n Supply Chain Attack Abuses Community Nodes to Steal OAuth Tokens TheHackerNews Daniel Bender 12 Jan 2026 Malicious npm packages posing as n8n community nodes were used to steal OAuth tokens by abusing trusted workflow integrations and credential storage.