Skip to content
Tech News
clear
Topics: Today This Week This Month This Year
31.
Leaked Shai-Hulud malware fuels new npm infostealer campaign (bleepingcomputer.com)
32.
'No way to prevent this,' says only package manager where this regularly happens (news.ycombinator.com)
33.
Popular node-ipc npm package compromised to steal credentials (bleepingcomputer.com)
34.
OpenAI confirms security breach in TanStack supply chain attack (bleepingcomputer.com)
35.
Protect your enterprise now from the Shai-Hulud worm and npm vulnerability in 6 actionable steps (venturebeat.com)
36.
Worm Redux: Fresh Mini Shai-Hulud Infections Bite Supply Chain (darkreading.com)
37.
Shai Hulud attack ships signed malicious TanStack, Mistral npm packages (bleepingcomputer.com)
38.
Show HN: Safe-install – safer NPM installs with trusted build dependencies (news.ycombinator.com)
39.
Postmortem: TanStack NPM supply-chain compromise (news.ycombinator.com)
40.
Postmortem: TanStack npm supply-chain compromise (news.ycombinator.com)
41.
TanStack NPM Packages Compromised (news.ycombinator.com)
42.
Remembering Planet Source Code: Sharing Code Before GitHub Made It Easy (news.ycombinator.com)
43.
Ask HN: We just had an actual UUID v4 collision... (news.ycombinator.com)
44.
OpenClaw Had a Rough Week (news.ycombinator.com)
45.
TeamPCP Hits SAP Packages With 'Mini Shai-Hulud' Attack (darkreading.com)
46.
Official SAP npm packages compromised to steal credentials (bleepingcomputer.com)
47.
NPM website was down (news.ycombinator.com)
48.
NPM Website Is Down (news.ycombinator.com)
49.
GlassWorm malware attacks return via 73 OpenVSX "sleeper" extensions (bleepingcomputer.com)
50.
Bitwarden CLI npm package compromised to steal developer credentials (bleepingcomputer.com)
51.
Bitwarden CLI compromised in ongoing Checkmarx supply chain campaign (news.ycombinator.com)
52.
Bitwarden CLI Compromised in Ongoing Checkmarx Supply Chain Campaign (news.ycombinator.com)
53.
New npm supply-chain attack self-spreads to steal auth tokens (bleepingcomputer.com)
54.
Vercel breach exposes the OAuth gap most security teams cannot detect, scope or contain (venturebeat.com)
55.
Critical flaw in Protobuf library enables JavaScript code execution (news.ycombinator.com)
56.
Critical flaw in Protobuf library enables JavaScript code execution (bleepingcomputer.com)
57.
Wacli – WhatsApp CLI (news.ycombinator.com)
58.
Wacli – WhatsApp CLI: sync, search, send (news.ycombinator.com)
59.
This year’s insane timeline of hacks (news.ycombinator.com)
60.
Axios Attack Shows How Complex Social Engineering Is Industrialized (darkreading.com)
Today's top topics: prime day zdnet amazon
View all today's topics →