Strapi plugins exploit Redis and PostgreSQL via postinstall scripts, enabling persistent access and data theft.
“The repo named in the notice was part of a fork network connected to our own public Claude Code repo, so the takedown ...