NPM flooded with malicious packages downloaded more than 86,000 times
(arstechnica.com)
31.
32.
PhantomRaven attack floods npm with credential-stealing packages
(bleepingcomputer.com)
33.
Vite+ – The Unified Toolchain for the Web
(news.ycombinator.com)
34.
Unofficial Postmark MCP npm silently stole users' emails
(bleepingcomputer.com)
35.
Show HN: Tips to stay safe from NPM supply chain attacks
(news.ycombinator.com)
37.
Pnpm has a new setting to stave off supply chain attacks
(news.ycombinator.com)
38.
Tinycolor supply chain attack post-mortem
(news.ycombinator.com)
39.
Oh no, not again a meditation on NPM supply chain attacks
(news.ycombinator.com)
40.
CrowdStrike Infested With "Self-Replicating Worms"
(futurism.com)
41.
Shai-Hulud malware attack: Tinycolor and over 40 NPM packages compromised
(news.ycombinator.com)
42.
Live Updates: Shai-Hulud, the Most Dangerous NPM Breach in History
(news.ycombinator.com)
43.
Self-propagating supply chain attack hits 187 npm packages
(bleepingcomputer.com)
44.
Self-Replicating Worm Hits 180+ Software Packages
(krebsonsecurity.com)
45.
Self Propagating NPM Malware Compromises over 40 Packages
(news.ycombinator.com)
47.
48.
49.
AGENTS.md – Open format for guiding coding agents
(news.ycombinator.com)
50.
Show HN: I've been building an ERP for manufacturing for the last 3 years
(news.ycombinator.com)
51.
Supply-chain attacks on open source software are getting out of hand
(arstechnica.com)
52.
Open source repositories are seeing a rash of supply-chain attacks
(arstechnica.com)
53.
NPM package ‘is’ with 2.8M weekly downloads infected devs with malware
(bleepingcomputer.com)
54.
npm 'accidentally' removes Stylus package, breaks builds and pipelines
(bleepingcomputer.com)
55.
Popular npm linter packages hijacked via phishing to drop malware
(bleepingcomputer.com)
56.
North Korean XORIndex malware hidden in 67 malicious npm packages
(bleepingcomputer.com)