NASCO suffered a data breach after its MOVEit software was accessed in late May. The breach was only discovered in mid-July.

New supply chain attack hits npm registry, compromising 40+ packages – Security Affairs
New supply chain attack hits npm registry, compromising 40+ packages Security Affairs