@anon
sign up
@anon
sign up
pull down to refresh
npm debug and chalk packages compromised
www.aikido.dev/blog/npm-debug-and-chalk-packages-compromised
21 sats
\
0 comments
\
@m0wer
9 Sep
tech
related
Malicious npm Packages Found Using Image Files to Hide Backdoor Code
thehackernews.com/2024/07/malicious-npm-packages-found-using.html?m=1
23 sats
\
0 comments
\
@ch0k1
19 Jul 2024
news
10 npm Packages Caught Stealing Developer Credentials on Windows, macOS & Linux
thehackernews.com/2025/10/10-npm-packages-caught-stealing.html
10 sats
\
0 comments
\
@ch0k1
29 Oct
security
Bogus npm Packages Used to Trick Software Developers into Installing Malware
thehackernews.com/2024/04/bogus-npm-packages-used-to-trick.html?m=1
42 sats
\
1 comment
\
@ch0k1
28 Apr 2024
security
North Korean Hackers Targeting Developers with Malicious npm Packages
thehackernews.com/2024/02/north-korean-hackers-targeting.html
23 sats
\
0 comments
\
@doofus
28 Feb 2024
security
Malicious npm Packages Infect 3,200+ Cursor Users With Backdoor
thehackernews.com/2025/05/malicious-npm-packages-infect-3200.html
24 sats
\
0 comments
\
@ch0k1
11 May
news
NPM debug and chalk packages compromised
www.aikido.dev/blog/npm-debug-and-chalk-packages-compromised
233 sats
\
0 comments
\
@hn
8 Sep
tech
'Sha1-Hulud' npm malware is back
157 sats
\
0 comments
\
@anon
28 Nov
lightning
Malicious Microsoft VSCode extensions target devs, crypto community
www.bleepingcomputer.com/news/security/malicious-microsoft-vscode-extensions-target-devs-crypto-community/
30 sats
\
0 comments
\
@ch0k1
18 Dec 2024
security
Malicious PyPi package steals Discord auth tokens from devs
www.bleepingcomputer.com/news/security/malicious-pypi-package-steals-discord-auth-tokens-from-devs/
59 sats
\
0 comments
\
@ch0k1
18 Jan
security
Backdoor Slipped Into Popular Code Library, Drains ~$155k From SOL Wallets
arstechnica.com/information-technology/2024/12/backdoor-slips-into-popular-code-library-drains-155k-from-digital-wallets/
81 sats
\
0 comments
\
@0xbitcoiner
5 Dec 2024
security
🚨 LEDGER'S CONNECT KIT HAS BEEN COMPROMISED.
32 sats
\
2 comments
\
@Dstzcg
14 Dec 2023
bitcoin
Hacking campaign compromised at least 16 Chrome browser extensions
securityaffairs.com/172491/hacking/chrome-browser-extensions-compromise.html
166 sats
\
0 comments
\
@nym
1 Jan
security
We Just Found Malicious Code in the Popular NPM Package
jdstaerk.substack.com/p/we-just-found-malicious-code-in-the
1397 sats
\
18 comments
\
@kristapsk
8 Sep
security
Self Propagating NPM Malware Compromises over 40 Packages
www.stepsecurity.io/blog/ctrl-tinycolor-and-40-npm-packages-compromised
100 sats
\
0 comments
\
@hn
16 Sep
tech
Self-Replicating Worm Hits 180+ Software Packages
krebsonsecurity.com/2025/09/self-replicating-worm-hits-180-software-packages/
50 sats
\
0 comments
\
@ch0k1
16 Sep
news
Tinycolor npm Package Compromised in (another) Supply Chain Attack
socket.dev/blog/tinycolor-supply-chain-attack-affects-40-packages
953 sats
\
3 comments
\
@aljaz
16 Sep
security
PhantomRaven: NPM Malware Hidden in Invisible Dependencies
www.koi.ai/blog/phantomraven-npm-malware-hidden-in-invisible-dependencies
289 sats
\
2 comments
\
@kepford
30 Oct
security
NPM hack was mentioned multiple times on SN before yesterday
130 sats
\
4 comments
\
@h6j5dhc567g
9 Sep
bitdevs
Official NPM package for XRP infected with crypto stealing backdoor
www.aikido.dev/blog/xrp-supplychain-attack-official-npm-package-infected-with-crypto-stealing-backdoor
12 sats
\
0 comments
\
@carter
22 Apr
security
Npm Run Hack:Me - A Supply Chain Attack Journey
rxj.dev/posts/npm-run-hack-supply-chain-attack-journey/
161 sats
\
1 comment
\
@k00b
12 Mar
devs
Snyk security researcher deploys malicious NPM packages targeting Cursor.com
sourcecodered.com/snyk-malicious-npm-package/
34 sats
\
0 comments
\
@hn
14 Jan
tech
more