This Week In Malware we pull apart a typosquat impersonating an Apache Kafka project and an interesting npm package that downloads another empty npm package—but turns out that's merely a distraction technique.

Article Link: This Week in Malware—Apache Kafka typosquats, shorthand data exfiltration