@anon
sign up
@anon
sign up
pull down to refresh
Tinycolor npm Package Compromised in (another) Supply Chain Attack
socket.dev/blog/tinycolor-supply-chain-attack-affects-40-packages
953 sats
\
3 comments
\
@aljaz
16 Sep 2025
security
related
Malicious npm Packages Found Using Image Files to Hide Backdoor Code
thehackernews.com/2024/07/malicious-npm-packages-found-using.html?m=1
23 sats
\
0 comments
\
@ch0k1
19 Jul 2024
news
NPM hack was mentioned multiple times on SN before yesterday
130 sats
\
4 comments
\
@h6j5dhc567g
9 Sep 2025
bitdevs
North Korean Hackers Targeting Developers with Malicious npm Packages
thehackernews.com/2024/02/north-korean-hackers-targeting.html
23 sats
\
0 comments
\
@doofus
28 Feb 2024
security
Bogus npm Packages Used to Trick Software Developers into Installing Malware
thehackernews.com/2024/04/bogus-npm-packages-used-to-trick.html?m=1
42 sats
\
1 comment
\
@ch0k1
28 Apr 2024
security
NPM security: preventing supply chain attacks | Snyk (2022)
snyk.io/blog/npm-security-preventing-supply-chain-attacks/
417 sats
\
20 comments
\
@ek
9 Sep 2025
security
Malicious npm Packages Infect 3,200+ Cursor Users With Backdoor
thehackernews.com/2025/05/malicious-npm-packages-infect-3200.html
24 sats
\
0 comments
\
@ch0k1
11 May 2025
news
GitHub suffers a cascading supply chain attack compromising CI/CD secrets
www.infoworld.com/article/3849245/github-suffers-a-cascading-supply-chain-attack-compromising-ci-cd-secrets.html
289 sats
\
2 comments
\
@ch0k1
21 Mar 2025
security
How to Verify the Impact of the Recent NPM Attack on My Wallets?
400 sats
\
29 comments
\
@spiderman
11 Sep 2025
bitcoin
GitHub Developers Hit in Complex Supply Chain Cyberattack
www.darkreading.com/application-security/github-developers-hit-in-complex-supply-chain-cyberattack
120 sats
\
0 comments
\
@ch0k1
26 Mar 2024
devs
Are There Some Sample Transactions from the Recent NPM Exploits?
100 sats
\
1 comment
\
@spiderman
11 Sep 2025
bitcoin
'Sha1-Hulud' npm malware is back
157 sats
\
0 comments
\
@anon
28 Nov 2025
lightning
Litespeed Cache bug exposes millions of WordPress sites to takeover attacks
www.bleepingcomputer.com/news/security/litespeed-cache-bug-exposes-millions-of-wordpress-sites-to-takeover-attacks/
41 sats
\
1 comment
\
@ch0k1
22 Aug 2024
security
ECONNREFUSED for `npm install -g pnpm`. help?
209 sats
\
5 comments
\
@deSign_r
24 Oct 2024
devs
Critical Security Flaw Found in LiteSpeed Cache Plugin for WordPress
thehackernews.com/2024/09/critical-security-flaw-found-in.html?m=1
10 sats
\
0 comments
\
@ch0k1
6 Sep 2024
security
🚨 LEDGER'S CONNECT KIT HAS BEEN COMPROMISED.
32 sats
\
2 comments
\
@Dstzcg
14 Dec 2023
bitcoin
Npm Run Hack:Me - A Supply Chain Attack Journey
rxj.dev/posts/npm-run-hack-supply-chain-attack-journey/
161 sats
\
1 comment
\
@k00b
12 Mar 2025
devs
We Just Found Malicious Code in the Popular NPM Package
jdstaerk.substack.com/p/we-just-found-malicious-code-in-the
1397 sats
\
18 comments
\
@kristapsk
8 Sep 2025
security
Self Propagating NPM Malware Compromises over 40 Packages
www.stepsecurity.io/blog/ctrl-tinycolor-and-40-npm-packages-compromised
100 sats
\
0 comments
\
@hn
16 Sep 2025
tech
NPM debug and chalk packages compromised
www.aikido.dev/blog/npm-debug-and-chalk-packages-compromised
233 sats
\
0 comments
\
@hn
8 Sep 2025
tech
Self-Replicating Worm Hits 180+ Software Packages
krebsonsecurity.com/2025/09/self-replicating-worm-hits-180-software-packages/
50 sats
\
0 comments
\
@ch0k1
16 Sep 2025
news
10 npm Packages Caught Stealing Developer Credentials on Windows, macOS & Linux
thehackernews.com/2025/10/10-npm-packages-caught-stealing.html
10 sats
\
0 comments
\
@ch0k1
29 Oct 2025
security
more