Skip to content
Tech News
clear
Topics: Today This Week This Month This Year
1.
Protect your enterprise now from the Shai-Hulud worm and npm vulnerability in 6 actionable steps (venturebeat.com)
2.
Worm Redux: Fresh Mini Shai-Hulud Infections Bite Supply Chain (darkreading.com)
3.
Shai Hulud attack ships signed malicious TanStack, Mistral npm packages (bleepingcomputer.com)
4.
Show HN: Safe-install – safer NPM installs with trusted build dependencies (news.ycombinator.com)
5.
Postmortem: TanStack NPM supply-chain compromise (news.ycombinator.com)
6.
Postmortem: TanStack npm supply-chain compromise (news.ycombinator.com)
7.
TanStack NPM Packages Compromised (news.ycombinator.com)
8.
Remembering Planet Source Code: Sharing Code Before GitHub Made It Easy (news.ycombinator.com)
9.
Ask HN: We just had an actual UUID v4 collision... (news.ycombinator.com)
10.
OpenClaw Had a Rough Week (news.ycombinator.com)
11.
TeamPCP Hits SAP Packages With 'Mini Shai-Hulud' Attack (darkreading.com)
12.
Official SAP npm packages compromised to steal credentials (bleepingcomputer.com)
13.
NPM website was down (news.ycombinator.com)
14.
NPM Website Is Down (news.ycombinator.com)
15.
GlassWorm malware attacks return via 73 OpenVSX "sleeper" extensions (bleepingcomputer.com)
16.
Bitwarden CLI npm package compromised to steal developer credentials (bleepingcomputer.com)
17.
Bitwarden CLI compromised in ongoing Checkmarx supply chain campaign (news.ycombinator.com)
18.
Bitwarden CLI Compromised in Ongoing Checkmarx Supply Chain Campaign (news.ycombinator.com)
19.
New npm supply-chain attack self-spreads to steal auth tokens (bleepingcomputer.com)
20.
Vercel breach exposes the OAuth gap most security teams cannot detect, scope or contain (venturebeat.com)
21.
Critical flaw in Protobuf library enables JavaScript code execution (news.ycombinator.com)
22.
Critical flaw in Protobuf library enables JavaScript code execution (bleepingcomputer.com)
23.
Wacli – WhatsApp CLI (news.ycombinator.com)
24.
Wacli – WhatsApp CLI: sync, search, send (news.ycombinator.com)
25.
This year’s insane timeline of hacks (news.ycombinator.com)
26.
Axios Attack Shows How Complex Social Engineering Is Industrialized (darkreading.com)
27.
Axios Attack Shows Complex Social Engineering Is Industrialized (darkreading.com)
28.
Axios Attack Shows Social Complex Engineering Is Industrialized (darkreading.com)
29.
Top NPM Maintainers Targeted with AI Deepfakes in Massive Supply-Chain Attack, Axios Briefly Compromised (slashdot.org)
30.
Axios npm hack used fake Teams error fix to hijack maintainer account (bleepingcomputer.com)
Today's top topics: google apple android amazon openai phone anthropic meta et al camera
View all today's topics →