News

Shai-Hulud is the third major supply chain attack targeting the NPM ecosystem after the s1ngularity attack and the recent ...
Halud, is compromising hundreds of NPM packages, spreading self-replicating malware, exfiltrating data, and turning private ...
Security researchers worldwide are warning about a supply-chain attack on the Node Package Manager (NPM), where a ...
Dozens of npm libraries, including a color library with over 2 million downloads a week, have been replaced with novel ...
Attackers can target several critical vulnerabilities in the Flowise low-coding platform and compromise systems.
The Windows 11 Start Menu Styler lets you customize the Start menu the way you want. You can remove the recommended section, ...
Any day now, a new version of Apple's macOS is due to launch, and it will exclude the bulk of the Intel-powered models the ...
Qix is an open source maintainer account that was compromised by a phishing attack. This allowed attackers to infect 18 popular npm packages with malicious code. Together, these packages are ...
In my experience, AI-based transcription is more accurate than built-in voice-to-text options and comes with more features.
On September 8, 2025, a single phishing email triggered one of npm’s most damaging supply chain attacks, compromising 18 ...
Ledger CTO warns of shocking NPM attacks by crypto hackers; How to stay safe if you’re using MetaMask, Phantom, Trust or any ...
Aikido Security Ltd. today disclosed what is being described as the largest npm supply chain compromise to date, after ...